ZeroHour

CVE-2023-32571

PoC
CVSS 3.1
9.8 critical
EPSS
35%p98
Published
()
Modified
Description

Dynamic Linq 1.0.7.10 through 1.2.25 before 1.3.0 allows attackers to execute arbitrary code and commands when untrusted input to methods including Where, Select, OrderBy is parsed.

Vendors
dynamic-linq
Products
linq
Weakness
CWE-697
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.