PT-2026-107982 · Imagemagick · Imagemagick
CVSS v3.1
4.0
Média
| Vetor | AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:L |
ImageMagick before 6.9.13-56 and 7.x before 7.1.2-31 lacks a security policy check in the CUT encoder, allowing configured security policies to be bypassed. Attackers can supply crafted input processed by the CUT encoder to crash the application or leak sensitive data.
Correção
Improper Access Control
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Imagemagick