CVE-2016-3714: ImageMagick Improper Input Validation Vulnerability.
ImageMagick Improper Input Validation Vulnerability. ImageMagick contains an improper input validation vulnerability that affects the EPHEMERAL, HTTPS, MVG, MSL, TEXT, SHOW, WIN, and PLT coders. This allows a remote attacker to execute arbitrary code via shell metacharacters in a crafted image.
- CISA KEV-listed (remediation due 2024-09-30)
- EPSS 93.6% (99.8% percentile)