Lucene search

K
cvelistMitreCVELIST:CVE-2021-40531
HistorySep 06, 2021 - 8:17 p.m.

CVE-2021-40531

2021-09-0620:17:01
mitre
www.cve.org
3
file quarantine
remote code execution
commandstring

AI Score

9.8

Confidence

High

EPSS

0.007

Percentile

80.9%

Sketch before 75 allows library feeds to be used to bypass file quarantine. Files are automatically downloaded and opened, without the com.apple.quarantine extended attribute. This results in remote code execution, as demonstrated by CommandString in a terminal profile to Terminal.app.

AI Score

9.8

Confidence

High

EPSS

0.007

Percentile

80.9%

Related for CVELIST:CVE-2021-40531