CVE

Id
87843  
CVE No.
CVE-2016-10320  
Status
Candidate  
Description
textract before 1.5.0 allows OS Command Injection attacks via a filename in a call to the process function. This may be a remote attack if a web application accepts names of arbitrary uploaded files.  
Phase
Assigned (20170406)  
Votes
None (candidate not yet proposed)  
Comments