CImg Library 2.3.3

CPE Details

CImg Library 2.3.3
2.3.3
2019-08-02
11h35 +00:00
2021-04-05
22h28 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:cimg:cimg_library:2.3.3:*:*:*:*:*:*:*

Informations

Vendor

cimg

Product

cimg_library

Version

2.3.3

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2019-1010174 2019-07-25 11h12 +00:00 CImg The CImg Library v.2.3.3 and earlier is affected by: command injection. The impact is: RCE. The component is: load_network() function. The attack vector is: Loading an image from a user-controllable url can lead to command injection, because no string sanitization is done on the url. The fixed version is: v.2.3.4.
9.8
Critique