CVE-2002-2047

The file preview functionality in Sketch 0.6.12 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the filename of an encapsulated Postscript (EPS) file.
Configurations

Configuration 1 (hide)

cpe:2.3:a:sketch:sketch:0.6.12:*:*:*:*:*:*:*

History

20 Nov 2024, 23:42

Type Values Removed Values Added
References () http://securitytracker.com/id?1003818 - Patch () http://securitytracker.com/id?1003818 - Patch
References () http://sketch.sourceforge.net/oldnews.html#N1 - () http://sketch.sourceforge.net/oldnews.html#N1 -
References () http://www.iss.net/security_center/static/8469.php - Patch () http://www.iss.net/security_center/static/8469.php - Patch
References () http://www.securityfocus.com/bid/4296 - Patch () http://www.securityfocus.com/bid/4296 - Patch

Information

Published : 2002-12-31 05:00

Updated : 2024-11-20 23:42


NVD link : CVE-2002-2047

Mitre link : CVE-2002-2047

CVE.ORG link : CVE-2002-2047


JSON object : View

Products Affected

sketch

  • sketch