Description
Inkdrop prior to v5.6.0 allows a local attacker to conduct a code injection attack by having a legitimate user open a specially crafted markdown file.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-48500 | Inkdrop prior to v5.6.0 allows a local attacker to conduct a code injection attack by having a legitimate user open a specially crafted markdown file. |
References
History
No history.
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-09-06T20:49:59.976Z
Reserved: 2023-09-26T06:46:01.793Z
Link: CVE-2023-44141
Updated: 2024-08-02T19:59:51.474Z
Status : Modified
Published: 2023-10-30T04:15:10.340
Modified: 2024-11-21T08:25:18.517
Link: CVE-2023-44141
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD