CyberSec.Space Logo
Back to CVE Browser

CVE-2016-3714

Known Exploited (CISA KEV)HIGH
8.4
CVSS Severity Score
EPSS Score29.8580%
EPSS Percentile85.31th
PublishedMay 5, 2016
Last ModifiedApr 21, 2026

Vulnerability Description

The (1) EPHEMERAL, (2) HTTPS, (3) MVG, (4) MSL, (5) TEXT, (6) SHOW, (7) WIN, and (8) PLT coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to execute arbitrary code via shell metacharacters in a crafted image, aka "ImageTragick."

Affected Platforms (CPE)

πŸ“¦
Imagemagick

Imagemagick

<= 6.9.3-9
πŸ“¦
Imagemagick

Imagemagick

= 7.0.0-0
πŸ“¦
Imagemagick

Imagemagick

= 7.0.1-0
πŸ’»
Canonical

Ubuntu Linux

= 12.04
πŸ’»
Canonical

Ubuntu Linux

= 14.04
πŸ’»
Canonical

Ubuntu Linux

= 15.10
πŸ’»
Canonical

Ubuntu Linux

= 16.04
πŸ’»
Debian

Debian Linux

= 8.0
πŸ’»
Debian

Debian Linux

= 9.0
πŸ’»
Opensuse

Leap

= 42.1
πŸ’»
Opensuse

Opensuse

= 13.2
πŸ’»
Suse

Suse Linux Enterprise Server

= 12

References & Advisories

Related Vulnerabilities