Disclosure Date 2024/04/09

CVE-2024-3566

Command injection vulnerability in programing languages on Windows

Windows上で動作する各種プログラミング言語におけるコマンドインジェクション

Credit

RyotaK

Description

A command inject vulnerability allows an attacker to perform command injection on Windows applications that indirectly depend on the CreateProcess function when the specific conditions are satisfied.

Back