CVE-2020-9359
MEDIUMKDE Okular <1.10.0 - Code Injection
Title source: llmDescription
KDE Okular before 1.10.0 allows code execution via an action link in a PDF document.
Exploits (1)
github
WRITEUP
4 stars
by tnpitsecurity · poc
https://github.com/tnpitsecurity/CVEs/tree/master/CVE-2020-9359
References (8)
Scores
CVSS v3
5.3
EPSS
0.0264
EPSS Percentile
85.5%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
Classification
Status
published
Affected Products (5)
kde/okular
< 1.10.0
debian/debian_linux
fedoraproject/fedora
fedoraproject/fedora
fedoraproject/fedora
Timeline
Published
Mar 24, 2020
Tracked Since
Feb 18, 2026