Beveiligingsadvies

CVE-2018-15536

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2018-08-24 19:00:00
Laatst bijgewerkt 2024-08-05 09:54:03
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

/filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 does not properly validate file paths in archives, allowing for the extraction of crafted archives to overwrite arbitrary files via an extract action, aka Directory Traversal.