Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:6155
HistoryApr 20, 2018 - 2:52 a.m.

Command Injection

2018-04-2002:52:32
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
3

EPSS

0.004

Percentile

72.4%

pdfinfojs is vulnerable to command injections. The application does not parse the filename parameter, allowing a malicious user to inject and execute arbitrary commands.

EPSS

0.004

Percentile

72.4%