mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 19:17:37 +02:00
20 lines
930 B
Markdown
20 lines
930 B
Markdown
### [CVE-2017-2793](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-2793)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
An exploitable heap corruption vulnerability exists in the UnCompressUnicode functionality of Antenna House DMC HTMLFilter used by MarkLogic 8.0-6. A specially crafted xls file can cause a heap corruption resulting in arbitrary code execution. An attacker can send/provide malicious XLS file to trigger this vulnerability.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
No PoCs from references.
|
|
|
|
#### Github
|
|
- https://github.com/dopheide-esnet/zeek-jetdirect
|
|
- https://github.com/matlink/cve-2017-1000083-atril-nautilus
|
|
- https://github.com/sUbc0ol/Detection-for-CVE-2017-2793
|
|
|