cve/2017/CVE-2017-12904.md
2024-06-18 02:51:15 +02:00

831 B

CVE-2017-12904

Description

Improper Neutralization of Special Elements used in an OS Command in bookmarking function of Newsbeuter versions 0.7 through 2.9 allows remote attackers to perform user-assisted code execution by crafting an RSS item that includes shell code in its title and/or URL.

POC

Reference

Github

No PoCs found on GitHub currently.