Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Radare2: command injection via pebble application files in radare2
Vulnerability Description
A flaw was found in Radare2, which contains a command injection vulnerability caused by insufficient input validation when handling Pebble Application files. Maliciously crafted inputs can inject shell commands during command parsing, leading to unintended behavior during file processing
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
radare2 安全漏洞
Vulnerability Description
radare2是radare开源的一套用于处理二进制文件的库和工具。 radare2 5.9.8及之前版本存在安全漏洞,该漏洞源于处理Pebble Application文件时存在输入验证不足,从而容易受到命令注入漏洞的攻击。
CVSS Information
N/A
Vulnerability Type
N/A