2 results (0.001 seconds)

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

ConEmu before commit 230724 does not sanitize title responses correctly for control characters, potentially leading to arbitrary code execution. This is related to an incomplete fix for CVE-2022-46387. ConEmu antes del commit 230724 no sanitiza correctamente las respuestas de título para los caracteres de control, lo que podría provocar la ejecución de código arbitrario. Esto está relacionado con una solución incompleta para CVE-2022-46387. • https://gist.github.com/dgl/081cf503dc635df39d844e058a6d4c88 https://github.com/Maximus5/ConEmu/commit/60683a186628ffaa7689fcb64b3c38ced69287c1 •

CVSS: 9.8EPSS: 0%CPEs: 2EXPL: 0

ConEmu through 220807 and Cmder before 1.3.21 report the title of the terminal, including control characters, which allows an attacker to change the title and then execute it as commands. • https://gist.github.com/dgl/05ca60cdc7efc9e47bbc58d0c952635e https://github.com/cmderdev/cmder/blob/master/CHANGELOG.md •