Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-25g3-v2pj-968v

Опубликовано: 29 июн. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

An issue in dc2niix before v.1.0.20240202 allows a local attacker to execute arbitrary code via the generated file name is not properly escaped and injected into a system call when certain types of compression are used.

An issue in dc2niix before v.1.0.20240202 allows a local attacker to execute arbitrary code via the generated file name is not properly escaped and injected into a system call when certain types of compression are used.

EPSS

Процентиль: 29%
0.00103
Низкий

7.8 High

CVSS3

Дефекты

CWE-116

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 1 года назад

An issue in dc2niix before v.1.0.20240202 allows a local attacker to execute arbitrary code via the generated file name is not properly escaped and injected into a system call when certain types of compression are used.

CVSS3: 7.8
nvd
больше 1 года назад

An issue in dc2niix before v.1.0.20240202 allows a local attacker to execute arbitrary code via the generated file name is not properly escaped and injected into a system call when certain types of compression are used.

CVSS3: 7.8
debian
больше 1 года назад

An issue in dc2niix before v.1.0.20240202 allows a local attacker to e ...

EPSS

Процентиль: 29%
0.00103
Низкий

7.8 High

CVSS3

Дефекты

CWE-116