5
CVSSv2

CVE-2015-1589

Published: 23/02/2015 Updated: 08/09/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Directory traversal vulnerability in arCHMage 0.2.4 allows remote malicious users to write to arbitrary files via a .. (dot dot) in a CHM file.

Vulnerable Product Search on Vulmon Subscribe to Product

archmage project archmage 0.2.4

Vendor Advisories

Debian Bug report logs - #776164 archmage: CVE-2015-1589: directory traversal Package: archmage; Maintainer for archmage is Mikhail Gusarov <dottedmag@debianorg>; Source for archmage is src:archmage (PTS, buildd, popcon) Reported by: Jakub Wilk <jwilk@debianorg> Date: Sat, 24 Jan 2015 20:21:01 UTC Severity: normal ...