ZeroHour

CVE-2022-23611

CVSS 3.1
9.8 critical
EPSS
1%p71
Published
()
Modified
Description

iTunesRPC-Remastered is a Discord Rich Presence for iTunes on Windows utility. In affected versions iTunesRPC-Remastered did not properly sanitize image file paths leading to OS level command injection. This issue has been patched in commit cdcd48b. Users are advised to upgrade.

Vendors
itunesrpc-remastered project
Products
itunesrpc-remastered
Weakness
CWE-78
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.