Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q937-m2fx-r449

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Eval injection vulnerability in xdg-utils 1.1.0 RC1, when no supported desktop environment is identified, allows context-dependent attackers to execute arbitrary code via the URL argument to xdg-open.

Eval injection vulnerability in xdg-utils 1.1.0 RC1, when no supported desktop environment is identified, allows context-dependent attackers to execute arbitrary code via the URL argument to xdg-open.

EPSS

Процентиль: 75%
0.00868
Низкий

Дефекты

CWE-77

Связанные уязвимости

ubuntu
около 11 лет назад

Eval injection vulnerability in xdg-utils 1.1.0 RC1, when no supported desktop environment is identified, allows context-dependent attackers to execute arbitrary code via the URL argument to xdg-open.

CVSS3: 7.8
redhat
больше 12 лет назад

Eval injection vulnerability in xdg-utils 1.1.0 RC1, when no supported desktop environment is identified, allows context-dependent attackers to execute arbitrary code via the URL argument to xdg-open.

nvd
около 11 лет назад

Eval injection vulnerability in xdg-utils 1.1.0 RC1, when no supported desktop environment is identified, allows context-dependent attackers to execute arbitrary code via the URL argument to xdg-open.

debian
около 11 лет назад

Eval injection vulnerability in xdg-utils 1.1.0 RC1, when no supported ...

suse-cvrf
около 11 лет назад

Security update for xdg-utils

EPSS

Процентиль: 75%
0.00868
Низкий

Дефекты

CWE-77