MEDIUM
QuaZIP before 0.7.6 is vulnerable to directory traversal, allowing attackers to write to arbitrary files via a ../ (dot dot slash) in a Zip archive entry that is mishandled during extraction
Published Jul 25, 2018
5.5
MEDIUMCVSS 3.0
EPSS 5.47%
Description
Affected products
Remediation
References (5)
Change history (0)
No recorded changes yet.