KiTTY 0.76.1.13 Command Injection

Discussion in 'News Aggregator' started by Packet Storm, 9 Feb 2024.

  1. Packet Storm

    Packet Storm Guest

    KiTTY versions 0.76.1.13 and below suffer from a command injection vulnerability when getting a remote file through scp. It appears to leverage an ANSI escape sequence issue which is quite an interesting vector of attack.

    Continue reading...
     

Share This Page

Loading...