Wireshark-users: [Wireshark-users] Quoted content not escaped during filter generation

Date Prev · Date Next · Thread Prev · Thread Next
From: "James Brown" <randomvoidmail@xxxxxxxxxxx>
Date: Tue, 26 Nov 2024 23:54:18 +0800
I can confirm this problem exists on a recent Windows version of Wireshark.

This issue happens when one right clicks on the web traffic content column and use it as filter. If the content contains double quotes, it will not be escaped, leading into syntax error and possible command injection vulnerabilities.