A vulnerability was found in Ucweb UC Browser 11.2.5.932. It has been classified as critical. Affected is an unknown function of the component HTML Handler. The manipulation of the argument title leads to improper restriction of rendered ui layers (URL). It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
References
Link Resource
http://seclists.org/fulldisclosure/2017/Mar/36 Exploit Mailing List Third Party Advisory
https://vuldb.com/?id.98214 Exploit Permissions Required Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: VulDB

Published: 2022-06-13T06:50:19

Updated: 2022-06-13T06:50:19

Reserved: 2022-06-06T00:00:00


Link: CVE-2017-20041

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-06-13T07:15:07.897

Modified: 2022-06-22T12:23:56.983


Link: CVE-2017-20041

JSON object: View

cve-icon Redhat Information

No data.

CWE