Directory traversal vulnerability in cabextract prior to 1.1 allows remote malicious users to overwrite arbitrary files via a cabinet file containing .. (dot dot) sequences in a filename.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cabextract project cabextract 0.2 |
||
cabextract project cabextract 0.6 |
||
cabextract project cabextract 1.0 |