Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The delegate code in ImageMagick 6.2.4.5-0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a filename that is processed by the display command.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ImageMagick图像文件名命令执行漏洞
Vulnerability Description
ImageMagick是美国ImageMagick Studio公司的一套开源的图象处理软件。该软件可读取、转换、写入多种格式的图片。 ImageMagick在图像文件名的处理上存在漏洞,攻击者可能利用漏洞在主机上执行Shell命令。ImageMagick没有对文件名中的可能出现的Shell转义字符及命令作充分过滤,攻击者可能诱使用户打开恶意的文件从而在用户机器上执行命令。
CVSS Information
N/A
Vulnerability Type
N/A