Attacker Value
Unknown
(0 users assessed)
Exploitability
Unknown
(0 users assessed)
User Interaction
Unknown
Privileges Required
Unknown
Attack Vector
Unknown
0

CVE-2005-0397

Disclosure Date: May 02, 2005
Add MITRE ATT&CK tactics and techniques that apply to this CVE.

Description

Format string vulnerability in the SetImageInfo function in image.c for ImageMagick before 6.0.2.5 may allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via format string specifiers in a filename argument to convert, which may be called by other web applications.

Add Assessment

No one has assessed this topic. Be the first to add your voice to the community.

Technical Analysis