Mahara 21.04 before 21.04.7, 21.10 before 21.10.5, 22.04 before 22.04.3, and 22.10 before 22.10.0 potentially allow a PDF export to trigger a remote shell if the site is running on Ubuntu and the flag -dSAFER is not set with Ghostscript.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2022-11-06T00:00:00

Updated: 2024-08-03T13:54:03.669Z

Reserved: 2022-11-01T00:00:00

Link: CVE-2022-44544

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-11-06T17:15:10.220

Modified: 2022-11-10T06:45:28.510

Link: CVE-2022-44544

cve-icon Redhat

No data.