ID:6002 - Exploit for Input validation error in LibreOffice - CVE-2019-9851

 
Main Vulnerability Database Exploits ID:6002 - Exploit for Input validation error in LibreOffice - CVE-2019-9851

ID:6002 - Exploit for Input validation error in LibreOffice - CVE-2019-9851

Published: June 17, 2021


Vulnerability identifier: #VU20860
Vulnerability risk: High
CVE-ID: CVE-2019-9851
CWE-ID: CWE-20
Exploitation vector: Remote access
Vulnerable software:
LibreOffice

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to execute arbitrary commands on the target system.

The vulnerability exists due to the affected software mishandles LibreLogo scripts. A remote attacker can persuade a user to open a specially crafted document and execute arbitrary commands on an affected system.


Remediation

Install updates from vendor's website.