Edubr2020/RealPlayer_G2_RCE

Edubr2020/RealPlayer_G2_RCE

Releases0
Stars3

CVE History

CVEPublishedCVSS v3CVSS v2
9.8 CRITICAL7.5 HIGH

In Real Player 20.0.8.310, the G2 Control allows injection of unsafe javascript: URIs in local HTTP error pages (displayed by Internet Explorer core). This leads to arbitrary code execution.