Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:35490
HistoryMay 12, 2022 - 11:22 a.m.

Arbitrary Code Execution

2022-05-1211:22:25
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9
xmp toolkit
arbitrary code injection
memory corruption
crafted file
malicious code
software

EPSS

0.007

Percentile

80.6%

XMP Toolkit is vulnerable to arbitrary code injection. The vulnerability exists due to a memory corruption when a victim opens a crafted file which allows an attacker to inject and execute malicious code.