← voltar
CVE-2020-35523

CVE-2020-35523

EPSS 1.9%CWE-190
Vexday Risk Score
3Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS EPSS 1.9%KEV nãoPoC Nuclei Metasploit Patch referenciado
Ciclo de vida
09 mar 2021Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
An integer overflow flaw was found in libtiff that exists in the tif_getimage.c file. This flaw allows an attacker to inject and execute arbitrary code when a user opens a crafted TIFF file. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
Produtos afetados
n/a · libtiff

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →