CVE-2016-3714

HIGH KEV

ImageMagick <6.9.3-10 & <7.0.1-1 - RCE

Title source: llm

Description

The (1) EPHEMERAL, (2) HTTPS, (3) MVG, (4) MSL, (5) TEXT, (6) SHOW, (7) WIN, and (8) PLT coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to execute arbitrary code via shell metacharacters in a crafted image, aka "ImageTragick."

Exploits (9)

exploitdb WORKING POC VERIFIED
by Metasploit · rubylocalmultiple
https://www.exploit-db.com/exploits/39791
exploitdb WORKING POC
by Nikolay Ermishkin · textdosmultiple
https://www.exploit-db.com/exploits/39767
nomisec WORKING POC 69 stars
by Hood3dRob1n · remote
https://github.com/Hood3dRob1n/CVE-2016-3714
nomisec WORKING POC 18 stars
by jpeanut · poc
https://github.com/jpeanut/ImageTragick-CVE-2016-3714-RShell
nomisec NO CODE 1 stars
by JoshMorrison99 · poc
https://github.com/JoshMorrison99/CVE-2016-3714
nomisec WORKING POC 1 stars
by chusiang · poc
https://github.com/chusiang/CVE-2016-3714.ansible.role
gitlab WORKING POC
by ahhh · client-side
https://gitlab.com/ahhh/CVE-2016-3714
nomisec WORKING POC
by tommiionfire · client-side
https://github.com/tommiionfire/CVE-2016-3714
nomisec WORKING POC
by jackdpeterson · poc
https://github.com/jackdpeterson/imagick_secure_puppet

References (31)

... and 11 more

Scores

CVSS v3 8.4
EPSS 0.9395
EPSS Percentile 99.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CISA KEV 2024-09-09
VulnCheck KEV 2016-05-04
InTheWild.io 2024-09-09
ENISA EUVD EUVD-2016-4735
CWE
CWE-20
Status published
Products (12)
canonical/ubuntu_linux 12.04
canonical/ubuntu_linux 14.04
canonical/ubuntu_linux 15.10
canonical/ubuntu_linux 16.04
debian/debian_linux 8.0
debian/debian_linux 9.0
imagemagick/imagemagick 7.0.0-0
imagemagick/imagemagick 7.0.1-0
imagemagick/imagemagick < 6.9.3-9
opensuse/leap 42.1
... and 2 more
Published May 05, 2016
KEV Added Sep 09, 2024
Tracked Since Feb 18, 2026