JPX Fragment List (flst) box vulnerability in Kakadu 7.9 allows an malicious user to exfiltrate local and remote files reachable by a server if the server allows the malicious user to upload a specially-crafted the image that is displayed back to the attacker.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
kakadusoftware kakadu sdk |