UnRAR prior to 5.5.7 allows remote malicious users to bypass a directory-traversal protection mechanism via vectors involving a symlink to the . directory, a symlink to the .. directory, and a regular file.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
rarlab unrar |