Описание
Improper sanitization in the invocation of ODA File Converter from FreeCAD 0.19 allows an attacker to inject OS commands via a crafted filename.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support, was needed |
| devel | not-affected | 1.0.0+dfsg-5build1 |
| esm-apps/bionic | needed | |
| esm-apps/focal | needed | |
| esm-apps/jammy | needed | |
| esm-apps/xenial | needed | |
| focal | ignored | end of standard support, was needed |
| impish | ignored | end of life |
| jammy | needed | |
| kinetic | ignored | end of life, was needs-triage |
Показывать по
10
7.6 High
CVSS2
7.8 High
CVSS3
Связанные уязвимости
CVSS3: 7.8
nvd
около 4 лет назад
Improper sanitization in the invocation of ODA File Converter from FreeCAD 0.19 allows an attacker to inject OS commands via a crafted filename.
CVSS3: 7.8
debian
около 4 лет назад
Improper sanitization in the invocation of ODA File Converter from Fre ...
CVSS3: 7.8
github
около 4 лет назад
Improper sanitization in the invocation of ODA File Converter from FreeCAD 0.19 allows an attacker to inject OS commands via a crafted filename.
7.6 High
CVSS2
7.8 High
CVSS3