CVE-2010-0011

Publication date

2010-02-25 19:00:00

Family

redhat

State

PUBLISHED

Description

The eval_js function in uzbl-core.c in Uzbl before 2010.01.05 exposes the run method of the Uzbl object, which allows remote attackers to execute arbitrary commands via JavaScript code.