Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5wf8-mf9h-53x2

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An issue was found in the Evernote client for Windows 10, 7, and 2008 in the protocol handler. This enables attackers for arbitrary command execution if the user clicks on a specially crafted URL. AKA: WINNOTE-19941.

An issue was found in the Evernote client for Windows 10, 7, and 2008 in the protocol handler. This enables attackers for arbitrary command execution if the user clicks on a specially crafted URL. AKA: WINNOTE-19941.

EPSS

Процентиль: 64%
0.00467
Низкий

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 8.8
nvd
больше 4 лет назад

An issue was found in the Evernote client for Windows 10, 7, and 2008 in the protocol handler. This enables attackers for arbitrary command execution if the user clicks on a specially crafted URL. AKA: WINNOTE-19941.

EPSS

Процентиль: 64%
0.00467
Низкий

Дефекты

CWE-77