vendor:
GreenShot
by:
p4r4bellum
7.8
CVSS
HIGH
Insecure Deserialization
502
CWE
Product Name: GreenShot
Affected Version From: 1.2.10
Affected Version To: 1.2.10
Patch Exists: YES
Related CWE: CVE-2023-34634
CPE: a:greenshot_project:greenshot:1.2.10
Platforms Tested: Windows 10.0.19045
2023
GreenShot 1.2.10 – Insecure Deserialization Arbitrary Code Execution
GreenShot 1.2.10 and below is vulnerable to an insecure object deserialization in its custom *.greenshot format. A stream of .Net object is serialized and insecurely deserialized when a *.greenshot file is open with the software. On a default install, the *.greenshot file extension is associated with the program, so double-click on a *.greenshot file will lead to arbitrary code execution.
Mitigation:
Update to a patched version of GreenShot (1.2.11 or above) that addresses the insecure deserialization vulnerability. Avoid opening untrusted *.greenshot files.