CVE-2024-3775

Publication date

2024-04-15 02:41:18

Family

twcert

State

PUBLISHED

Description

aEnrich Technology a+HRDs functionality for downloading files using youtube-dl.exe does not properly restrict user input. This allows attackers to pass arbitrary arguments to youtube-dl.exe, leading to the download of partial unauthorized files.