Lucene search

K
cvelistMitreCVELIST:CVE-2005-0638
HistoryMar 04, 2005 - 5:00 a.m.

CVE-2005-0638

2005-03-0405:00:00
mitre
www.cve.org
4

AI Score

7.1

Confidence

Low

EPSS

0.008

Percentile

81.2%

xloadimage before 4.1-r2, and xli before 1.17, allows attackers to execute arbitrary commands via shell metacharacters in filenames for compressed images, which are not properly quoted when calling the gunzip command.

AI Score

7.1

Confidence

Low

EPSS

0.008

Percentile

81.2%