PT-2021-2672 · Unknown · Raw Image Extension

Cszq

+3

·

Published

2021-04-13

·

Updated

2023-12-29

·

CVE-2021-28466

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Raw Image Extension (affected versions not specified)
Description: The issue is related to incorrect code generation management in the Raw Image Extension plugin. It can be exploited by an attacker to execute arbitrary code using a specially crafted malicious web page or a specially crafted malicious file.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Code Injection

Weakness Enumeration

Related Identifiers

BDU:2021-02202
CVE-2021-28466

Affected Products

Raw Image Extension