Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:23235
HistoryApr 10, 2020 - 12:20 a.m.

Arbitrary Code Execution

2020-04-1000:20:12
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

EPSS

0.003

Percentile

70.1%

imagemagick is vulnerable to arbitrary code execution. The vulnerability exists as an integer overflow flaw was found in ImageMagick’s DIB parsing code. If a victim opened a specially-crafted DIB file, an attacker could potentially execute arbitrary code with the privileges of the user running ImageMagick.

References