Improperly escaped save directory that is passed to the shell allows local attacker with access to the session the agent runs to inject arbitrary commands to be executed (CVE-2017-15108).
{ "section": "core" }
"https://advisories.mageia.org/MGASA-2019-0032.json"