ZeroHour

CVE-2020-17759

CVSS 3.1
8.8 high
EPSS
3%p88
Published
()
Modified
Description

An issue was found in the Evernote client for Windows 10, 7, and 2008 in the protocol handler. This enables attackers for arbitrary command execution if the user clicks on a specially crafted URL. AKA: WINNOTE-19941.

Vendors
evernote
Products
evernote
Weakness
CWE-77
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.