A vulnerability arises out of a failure to comprehensively sanitize the processing of a zip file(s). Incomplete neutralization of external commands used to control the process execution of the .zip application allows an authorized user to obtain control of the .zip application to execute arbitrary commands or obtain elevation of system privileges.
History

Fri, 25 Oct 2024 13:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: trellix

Published: 2023-07-03T08:02:29.010Z

Updated: 2024-10-25T13:07:40.821Z

Reserved: 2023-06-19T08:42:45.707Z

Link: CVE-2023-3314

cve-icon Vulnrichment

Updated: 2024-08-02T06:55:03.231Z

cve-icon NVD

Status : Modified

Published: 2023-07-03T09:15:09.590

Modified: 2024-11-21T08:16:59.577

Link: CVE-2023-3314

cve-icon Redhat

No data.