CVE-2021-25631 Information
Jun 07, 2022
cve
Description
In the LibreOffice 7-1 series in versions prior to 7.1.2 and in the 7-0 series in versions prior to 7.0.5 the denylist can be circumvented by manipulating the link so it doesn’t match the denylist but results in ShellExecute attempting to launch an executable type.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Reference
https://www.libreoffice.org/about-us/security/advisories/cve-2021-25631/ https://positive.security/blog/url-open-rce#open-libreoffice https://positive.security/blog/url-open-rce#open-libreoffice
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
REQUIRED
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
8.8
Share on: