Beveiligingsadvies

CVE-2016-10320

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2017-04-06 18:00:00
Laatst bijgewerkt 2024-09-16 18:39:18
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

textract before 1.5.0 allows OS Command Injection attacks via a filename in a call to the process function. This may be a remote attack if a web application accepts names of arbitrary uploaded files.