CVE-2020-24972
HIGHKleopatra <3.1.12 - Code Execution via openpgp4fpr URL Handling
Title source: manualExploitation Summary
EIP tracks 1 public exploit for CVE-2020-24972. PoCs published by SpiralBL0CK.
AI-analyzed exploit summary This PoC exploits CVE-2020-24972 by leveraging the Qt platformpluginpath command-line option to load a malicious DLL. The DLL, when loaded by a vulnerable application like Kleopatra, executes arbitrary code via a MessageBox pop-up as a proof of concept.
Description
The Kleopatra component before 3.1.12 (and before 20.07.80) for GnuPG allows remote attackers to execute arbitrary code because openpgp4fpr: URLs are supported without safe handling of command-line options. The Qt platformpluginpath command-line option can be used to load an arbitrary DLL.
Exploits (1)
This PoC exploits CVE-2020-24972 by leveraging the Qt platformpluginpath command-line option to load a malicious DLL. The DLL, when loaded by a vulnerable application like Kleopatra, executes arbitrary code via a MessageBox pop-up as a proof of concept.
References (6)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H