CVE-2024-3566

Command injection vulnerability in programing languages on Windows (Windows上で動作する各種プログラミング言語におけるコマンドインジェクション)

A command inject vulnerability allows an attacker to perform command injection on Windows applications that indirectly depend on the CreateProcess function when the specific conditions are satisfied.

Disclosure Date

2024/04/09

Credit

RyotaK

Back