5.3
CVSSv3

CVE-2020-35460

Published: 14/12/2020 Updated: 06/08/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

common/InputStreamHelper.java in Packwood MPXJ prior to 8.3.5 allows directory traversal in the zip stream handler flow, leading to the writing of files to arbitrary locations.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mpxj mpxj

oracle primavera unifier 16.2

oracle primavera unifier 16.1

oracle primavera unifier 18.8

oracle primavera unifier

oracle primavera unifier 19.12

oracle primavera unifier 21.12