Products
UTAU
- before v0.4.19
Source
vultures@jpcert.or.jp
Tags
CVE-2024-28886 details
Published : May 28, 2024, 3:15 a.m.
Last Modified : May 28, 2024, 12:39 p.m.
Last Modified : May 28, 2024, 12:39 p.m.
Description
OS command injection vulnerability exists in UTAU versions prior to v0.4.19. If a user of the product opens a crafted UTAU project file (.ust file), an arbitrary OS command may be executed.
CVSS Score
1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 |
---|
Weakness
Weakness | Name | Description |
---|
References
URL | Source |
---|---|
https://jvn.jp/en/jp/JVN71404925/ | vultures@jpcert.or.jp |
https://utau2008.xrea.jp/ | vultures@jpcert.or.jp |
This website uses the NVD API, but is not approved or certified by it.