iss.00-10-04.gnugroff...

- AV AC AU C I A
发布: 2000-10-04
修订: 2025-04-13

Internet Security Systems Security Advisory - GNU Groff utilities read untrusted commands from the current working directory. This vulnerability takes advantage of "troff" and "groff", the front-end for troff. The use of "troff" does not restrict the searchable path while "groff" can be manipulated into running a dangerous command or file outside of the normal path. Unsuspecting users, including root, could be tricked into running arbitrary commands on the system.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息