Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-3044

Опубликовано: 14 мая 2024
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.

EPSS

Процентиль: 78%
0.01169
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-356
CWE-94

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 1 года назад

Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.

CVSS3: 7.3
redhat
около 1 года назад

Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.

CVSS3: 6.5
debian
около 1 года назад

Unchecked script execution in Graphic on-click binding in affected Lib ...

suse-cvrf
12 месяцев назад

Security update for libreoffice

suse-cvrf
12 месяцев назад

Security update for libreoffice

EPSS

Процентиль: 78%
0.01169
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-356
CWE-94