NA

CVE-2022-45639

Published: 24/01/2023 Updated: 11/04/2024
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

OS Command injection vulnerability in sleuthkit fls tool 4.11.1 allows malicious users to execute arbitrary commands via a crafted value to the m parameter. NOTE: third parties have disputed this because there is no analysis showing that the backtick command executes outside the context of the user account that entered the command line.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sleuthkit the sleuth kit 4.11.1

Exploits

Sleuthkit version 4111 suffers from a command injection vulnerability ...