ZeroHour

CVE-2019-17400

PoC
CVSS 3.1
7.5 high
EPSS
2%p79
Published
()
Modified
Description

The unoconv package before 0.9 mishandles untrusted pathnames, leading to SSRF and local file inclusion.

Vendors
universal office converter project
Products
universal office converter
Weakness
CWE-918
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.