Skip to content

giovannipajeu1/CVE-2024-23739

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

2 Commits
 
 

Repository files navigation

CVE-2024-23739

An issue in Discord through 0.0.291 on macOS allows a remote attacker to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.

There is a tool designed to automate the process of searching for vulnerabilities in electron: https://github.com/r3ggi/electroniz3r image

With this tool, we can check if the App is Vulnerable:

image

After validation, we can inject our code, and get a shell

image

Enjoy Your Shell :)

About

CVE-2024-23739

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published