cve/2018/CVE-2018-10583.md
2024-06-18 02:51:15 +02:00

1.1 KiB

CVE-2018-10583

Description

An information disclosure vulnerability occurs when LibreOffice 6.0.3 and Apache OpenOffice Writer 4.1.5 automatically process and initiate an SMB connection embedded in a malicious file, as demonstrated by xlink:href=file://192.168.0.2/test.jpg within an office:document-content element in a .odt XML document.

POC

Reference

Github