CVE-2009-1383

Severity CVSS v4.0:
Pending analysis
Type:
CWE-94 Code Injection
Publication date:
14/07/2009
Last modified:
09/04/2025

Description

The getdirective function in mathtex.cgi in mathTeX, when downloaded before 20090713, allows remote attackers to execute arbitrary commands via shell metacharacters in the dpi tag.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:forkosh:mathtex:-:*:*:*:*:*:*:*