Описание
Vim before 9.2.0272 allows code execution that happens immediately upon opening a crafted file in the default configuration, because %{expr} injection occurs with tabpanel lacking P_MLE.
Ссылки
- Patch
- Release Notes
- Vendor Advisory
- Mailing ListThird Party Advisory
- Issue TrackingMailing List
- Mailing List
- Mailing List
Уязвимые конфигурации
EPSS
9.2 Critical
CVSS3
8.6 High
CVSS3
Дефекты
Связанные уязвимости
Vim before 9.2.0272 allows code execution that happens immediately upon opening a crafted file in the default configuration, because %{expr} injection occurs with tabpanel lacking P_MLE.
Vim before 9.2.0272 allows code execution that happens immediately upon opening a crafted file in the default configuration, because %{expr} injection occurs with tabpanel lacking P_MLE.
Vim before 9.2.0272 allows code execution that happens immediately upon opening a crafted file in the default configuration, because %{expr} injection occurs with tabpanel lacking P_MLE.
Vim before 9.2.0272 allows code execution that happens immediately upo ...
Vim before 9.2.0272 allows code execution that happens immediately upon opening a crafted file in the default configuration, because %{expr} injection occurs with tabpanel lacking P_MLE.
EPSS
9.2 Critical
CVSS3
8.6 High
CVSS3