Количество 4
Количество 4
CVE-2017-17535
lib/gui.py in Bob Hepple gjots2 2.4.1 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL.
CVE-2017-17535
lib/gui.py in Bob Hepple gjots2 2.4.1 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL.
CVE-2017-17535
lib/gui.py in Bob Hepple gjots2 2.4.1 does not validate strings before ...
GHSA-fmff-qfhq-37jm
lib/gui.py in Bob Hepple gjots2 2.4.1 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2017-17535 lib/gui.py in Bob Hepple gjots2 2.4.1 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL. | CVSS3: 8.8 | 1% Низкий | около 8 лет назад | |
CVE-2017-17535 lib/gui.py in Bob Hepple gjots2 2.4.1 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL. | CVSS3: 8.8 | 1% Низкий | около 8 лет назад | |
CVE-2017-17535 lib/gui.py in Bob Hepple gjots2 2.4.1 does not validate strings before ... | CVSS3: 8.8 | 1% Низкий | около 8 лет назад | |
GHSA-fmff-qfhq-37jm lib/gui.py in Bob Hepple gjots2 2.4.1 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL. | CVSS3: 8.8 | 1% Низкий | больше 3 лет назад |
Уязвимостей на страницу