CVE-2023-27770: Code Injection
Published Apr 4, 2023
·Updated
An issue found in Wondershare Technology Co.,Ltd Edraw-max v.12.0.4 allows a remote attacker to execute arbitrary commands via the edraw-maxsetupfull5371.exe file.
Affected Software
1 affected component
Wondershare Edraw-max=12.0.4
Event History
Apr 4, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-27770?
CVE-2023-27770 is classified as a high-severity vulnerability due to the potential for remote command execution.
2
How do I fix CVE-2023-27770?
To mitigate CVE-2023-27770, it is recommended to update Wondershare Edraw-max to the latest version that contains security patches.
3
Which versions of Wondershare Edraw-max are affected by CVE-2023-27770?
CVE-2023-27770 specifically affects Wondershare Edraw-max version 12.0.4.
4
What type of attack is associated with CVE-2023-27770?
CVE-2023-27770 allows a remote attacker to execute arbitrary commands on the affected system.
5
Is there a workaround for CVE-2023-27770?
Currently, the best practice is to disable the installation or execution of the affected edraw-max_setup_full5371.exe file until a patch is applied.