ZeroHour

CVE-2016-3716

PoC
CVSS 3.0
3.3 low
EPSS
11%p96
Published
()
Modified
Description

The MSL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to move arbitrary files via a crafted image.

Vendors
canonicalimagemagickredhat
Products
ubuntu linux, imagemagick, enterprise linux desktop, enterprise linux hpc node, enterprise linux hpc node eus, enterprise linux server, enterprise linux server aus, enterprise linux server eus, enterprise linux server supplementary eus, enterprise linux workstation
Weakness
CWE-264
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.