The network protocol of Blade Shadow though 2.13.3 allows remote attackers to take control of a Shadow instance and execute arbitrary code by only knowing the victim's IP address, because packet data can be injected into the unencrypted UDP packet stream.
Link | Tags |
---|---|
https://sigint.sh/#/cve-2019-16110 | third party advisory |