7.8
CVSSv3

CVE-2019-13241

Published: 04/07/2019 Updated: 28/02/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

FlightCrew v0.9.2 and older are vulnerable to a directory traversal, allowing malicious users to write arbitrary files via a ../ (dot dot slash) in a ZIP archive entry that is mishandled during extraction.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

flightcrew project flightcrew

canonical ubuntu linux 18.04

canonical ubuntu linux 18.10

canonical ubuntu linux 19.04

canonical ubuntu linux 16.04

Vendor Advisories

Several security issues were fixed in FlightCrew ...