跳转到帖子

LG Simple Editor Command Injection (CVE-2023-40504)

recommended_posts

发布于
  • Members

LG Simple Editor Command Injection (CVE-2023-40504)

Disclosed
08/04/2023
Created
08/14/2024

Description

Unauthenticated Command Injection in LG Simple Editor <= v3.21.0. The vulnerability can be exploited by a remote attacker to inject arbitrary operating system commands which will get executed in the context of NT AUTHORITY\SYSTEM.

Author(s)

  • rgod
  • Michael Heinzl

Platform

Windows

Architectures

cmd

Development

  • Source Code
  • History
  • 查看数 703
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。
注意:你的帖子需要版主批准后才能看到。

游客
回帖…