← back
CVE-2005-3302

CVE-2005-3302

CVSS 7.3 HIGHEPSS 3.9%CWE-94
Vexday Risk Score
41Attention
SSVC decision (CISA)
Attend
PoC available → attend closely
CVSS 7.3EPSS 3.9%KEV nãoPoC públicaNuclei Metasploit Patch referenciado
Lifecycle
24 Oct 2005Published on NVD
24 Apr 2006Public PoC
Recommendation: Plan a near-term fix — a public PoC already exists.
Eval injection vulnerability in bvh_import.py in Blender 2.36 allows attackers to execute arbitrary Python code via a hierarchy element in a .bvh file, which is supplied to an eval function call.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →