Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:35497
HistoryMay 12, 2022 - 11:25 a.m.

Arbitrary Code Execution

2022-05-1211:25:32
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10
xmp toolkit
buffer underflow
arbitrary code execution
user interaction
malicious file

EPSS

0.002

Percentile

52.1%

XMP Toolkit version 2020.1 (and earlier) is affected by a Buffer Underflow vulnerability which could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.