CVE Database
/

CVE-2020-17532

Back to search

CVE-2020-17532

Published: Jan 25, 2021

Modified: Feb 13, 2025

PUBLISHED

Description

When handler-router component is enabled in servicecomb-java-chassis, authenticated user may inject some data and cause arbitrary code execution. The problem happens in versions between 2.0.0 ~ 2.1.3 and fixed in Apache ServiceComb-Java-Chassis 2.1.5

VendorProductVersions

Apache Software Foundation

Apache ServiceComb-Java-Chassis

affected
Apache ServiceComb-Java-Chassis 2.x 2.0.0 to 2.1.3

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now