CVE-2019-10038

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
31/05/2019
Last modified:
11/05/2020

Description

Evernote 7.9 on macOS allows attackers to execute arbitrary programs by embedding a reference to a local executable file such as the /Applications/Calculator.app/Contents/MacOS/Calculator file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:evernote:evernote:7.9:*:*:*:*:macos:*:*