CVE Vulnerabilities

CVE-2022-46387

Published: Mar 28, 2023 | Modified: Oct 05, 2023
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

ConEmu through 220807 and Cmder before 1.3.21 report the title of the terminal, including control characters, which allows an attacker to change the title and then execute it as commands.

Affected Software

Name Vendor Start Version End Version
Cmder Cmder * 1.3.2 (excluding)

References