Incomplete blacklist vulnerability in the checkBlacklist function in CPAINT allows remote attackers to execute arbitrary commands via the (1) ExecuteGlobal function or (2) GetRef statement, which is not included in the blacklist.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Cpaint | Cpaint | * | * |