Remote code execution vulnerability can be achieved by using cookie values as paths to a file by this builder program. A remote attacker could exploit the vulnerability to execute or inject malicious code.
No PoCs from references.
- https://github.com/kaist-hacking/awesome-korean-products-hacking