metadata
license: mit
tags:
- mfv
- huntr
- eg3d
- rce
EG3D MFV PoC — RCE via Unsafe Pickle Deserialization
Vulnerability: RCE via pickle.load + exec() in NVIDIA's custom @persistent_class unpickler
Project: https://github.com/NVlabs/eg3d
File: malicious.pkl — triggers os.system when loaded via persistence.load_network_pkl()