--- license: mit tags: - mfv - huntr - eg3d - rce --- # EG3D MFV PoC — RCE via Unsafe Pickle Deserialization **Vulnerability:** RCE via pickle.load + exec() in NVIDIA's custom @persistent_class unpickler **Project:** https://github.com/NVlabs/eg3d **File:** `malicious.pkl` — triggers `os.system` when loaded via `persistence.load_network_pkl()`