An issue was discovered in UNCTAD ASYCUDA World 2001 through 2020. The Java RMI Server has an Insecure Default Configuration, leading to Java Code Execution from a remote URL because an RMI Distributed Garbage Collector method is called.
References
Link | Resource |
---|---|
https://pastebin.com/jP4thzzG | Third Party Advisory |
https://unctad.org/en/Pages/DTL/TTL/ASYCUDA-Programme.aspx | Product |
Configurations
History
No history.
Information
Published : 2020-03-04 17:15
Updated : 2021-07-21 11:39
NVD link : CVE-2020-9761
Mitre link : CVE-2020-9761
CVE.ORG link : CVE-2020-9761
JSON object : View
Products Affected
unctad
- asycuda_world
CWE