Miggo Logo

CVE-2020-17521: Information Disclosure in Apache Groovy

5.5

CVSS Score
3.1

Basic Information

EPSS Score
0.57244%
Published
12/9/2020
Updated
10/17/2024
KEV Status
No
Technology
TechnologyJava

Technical Details

CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Package NameEcosystemVulnerable VersionsFirst Patched Version
org.codehaus.groovy:groovymaven>= 2.0.0, < 2.4.212.4.21
org.codehaus.groovy:groovymaven>= 2.5.0, < 2.5.142.5.14
org.codehaus.groovy:groovymaven>= 3.0.0, < 3.0.73.0.7
org.codehaus.groovy:groovy-allmaven>= 2.0.0, < 2.4.212.4.21
org.codehaus.groovy:groovy-allmaven>= 2.5.0, < 2.5.142.5.14
org.codehaus.groovy:groovy-allmaven>= 3.0.0, < 3.0.73.0.7

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

*p**** *roovy provi**s *xt*nsion m*t*o*s to *i* wit* *r**tin* t*mpor*ry *ir**tori*s. Prior to t*is *ix, *roovy's impl*m*nt*tion o* t*os* *xt*nsion m*t*o*s w*s usin* * now sup*rs**** J*v* J*K m*t*o* **ll t**t is pot*nti*lly not s**ur* on som* op*r*tin

Reasoning

No *n*lysis *v*il**l*