Filtered by vendor Gentoo Subscriptions
Filtered by product Xdg-utils Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2008-0386 2 Gentoo, Mandrakesoft 2 Xdg-utils, Mandrake Linux 2024-08-07 N/A
Xdg-utils 1.0.2 and earlier allows user-assisted remote attackers to execute arbitrary commands via shell metacharacters in a URL argument to (1) xdg-open or (2) xdg-email.
CVE-2014-9622 1 Gentoo 1 Xdg-utils 2024-08-06 N/A
Eval injection vulnerability in xdg-utils 1.1.0 RC1, when no supported desktop environment is identified, allows context-dependent attackers to execute arbitrary code via the URL argument to xdg-open.