Security Advisory

CVE-2018-17828

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-10-01 08:00:00
Last updated 2024-08-05 10:54:10
Assigner mitre
State PUBLISHED

Description

Directory traversal vulnerability in ZZIPlib 0.13.69 allows attackers to overwrite arbitrary files via a .. (dot dot) in a zip file, because of the function unzzip_cat in the bins/unzzipcat-mem.c file.