5.3
CVSSv3

CVE-2020-35460

CVSSv4: NA | CVSSv3: 5.3 | CVSSv2: 5 | VMScore: 630 | EPSS: 0.00108 | KEV: Not Included
Published: 14/12/2020 Updated: 21/11/2024

Vulnerability Summary

common/InputStreamHelper.java in Packwood MPXJ prior to 8.3.5 allows directory traversal in the zip stream handler flow, leading to the writing of files to arbitrary locations.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mpxj mpxj

oracle primavera unifier

oracle primavera unifier 16.1

oracle primavera unifier 16.2

oracle primavera unifier 18.8

oracle primavera unifier 19.12

oracle primavera unifier 21.12