tinyfiledialogs (aka tiny file dialogs) before 3.15.0 allows shell metacharacters (such as a backquote or a dollar sign) in titles, messages, and other input data. NOTE: this issue exists because of an incomplete fix for CVE-2020-36767, which only considered single and double quote characters.
Metrics
Affected Vendors & Products
References
History
Mon, 09 Sep 2024 22:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-77 |
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2023-10-30T00:00:00
Updated: 2024-09-09T20:34:10.445Z
Reserved: 2023-10-30T00:00:00
Link: CVE-2023-47104
Vulnrichment
Updated: 2024-08-02T21:01:22.686Z
NVD
Status : Modified
Published: 2023-10-30T19:15:08.343
Modified: 2024-11-21T08:29:46.890
Link: CVE-2023-47104
Redhat
No data.