codeBeamer before 9.5.0-RC3 does not properly restrict the ability to execute custom Java code and access the Java class loader via computed fields.
References
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-04-02T15:04:48

Updated: 2024-08-05T02:46:10.343Z

Reserved: 2020-04-02T00:00:00

Link: CVE-2019-20635

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-04-02T16:15:14.573

Modified: 2024-11-21T04:38:55.893

Link: CVE-2019-20635

cve-icon Redhat

No data.