Skip to content

146:growl:Command Injection #235

@marshyski

Description

@marshyski

CVES CVE-2017-16042
CWE CWE-94
References: Issue #60
PR #61
Affected versions of growl do not properly sanitize input prior to passing it into a shell command, allowing for arbitrary command execution.
@marshyski

Metadata

Metadata

Assignees

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions