Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rq4p-fxq5-65xc

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The fbgames protocol handler registered as part of Facebook Gameroom does not properly quote arguments passed to the executable. That allows a malicious URL to cause code execution. This issue affects versions prior to v1.26.0.

The fbgames protocol handler registered as part of Facebook Gameroom does not properly quote arguments passed to the executable. That allows a malicious URL to cause code execution. This issue affects versions prior to v1.26.0.

EPSS

Процентиль: 78%
0.01161
Низкий

Дефекты

CWE-88

Связанные уязвимости

CVSS3: 9.8
nvd
почти 5 лет назад

The fbgames protocol handler registered as part of Facebook Gameroom does not properly quote arguments passed to the executable. That allows a malicious URL to cause code execution. This issue affects versions prior to v1.26.0.

EPSS

Процентиль: 78%
0.01161
Низкий

Дефекты

CWE-88