An improper input validation leading to arbitrary file creation was discovered in ToWord of ToOffice. Remote attackers use this vulnerability to execute arbitrary file included malicious code.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: krcert

Published: 2022-02-18T17:50:21

Updated: 2022-02-18T17:50:21

Reserved: 2021-02-03T00:00:00


Link: CVE-2021-26618

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-02-18T18:15:09.147

Modified: 2022-02-25T21:55:59.517


Link: CVE-2021-26618

JSON object: View

cve-icon Redhat Information

No data.

CWE