Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
DAZ Studio 2.3.3.161, 2.3.3.163, and 3.0.1.135 allows remote attackers to execute arbitrary JavaScript code via a (1) .ds, (2) .dsa, (3) .dse, or (4) .dsb file, as demonstrated by code that loads the WScript.Shell ActiveX control, related to a "script injection vulnerability."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Daz3D DAZ Studio脚本支持远程命令执行漏洞
Vulnerability Description
DAZ Studio是免费的3D图形设计和3D动画工具。 DAZ Studio在执行.ds、.dsa、.dse、.dsb脚本文件之前没有要求用户进行任何确认,用户受骗打开恶意脚本文件就会导致执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A