cve/2014/CVE-2014-2528.md
2024-07-25 21:25:12 +00:00

786 B

CVE-2014-2528

Description

kcleanup.cpp in KDirStat 2.7.3 does not properly quote strings when deleting a directory, which allows remote attackers to execute arbitrary commands via a ' (single quote) character in the directory name, a different vulnerability than CVE-2014-2527.

POC

Reference

Github

No PoCs found on GitHub currently.