Directory traversal vulnerability in patch.py in Mercurial 1.0.1 allows user-assisted malicious users to modify arbitrary files via ".." (dot dot) sequences in a patch file.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mercurial mercurial 1.0.1 |