mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 19:17:37 +02:00
888 B
888 B
CVE-2017-7442
Description
Nitro Pro 11.0.3.173 allows remote attackers to execute arbitrary code via saveAs and launchURL calls with directory traversal sequences.
POC
Reference
- http://srcincite.io/advisories/src-2017-0005/
- http://srcincite.io/advisories/src-2017-0005/
- https://www.exploit-db.com/exploits/42418/
- https://www.exploit-db.com/exploits/42418/