Skip to main content

Incorrect Comparison

CVE-2023-32571

Severity High
Score 9.8/10

Summary

Dynamic Linq versions prior to 1.3.0 allows attackers to execute arbitrary code and commands when untrusted input to methods including "Where", "Select", "OrderBy" is parsed.

  • LOW
  • NETWORK
  • HIGH
  • UNCHANGED
  • NONE
  • NONE
  • HIGH
  • HIGH

CWE-697 - Incorrect Comparison

The software compares two entities in a security-relevant context, but the comparison is incorrect, which may lead to resultant weaknesses.

Advisory Timeline

  • Published