Security Advisory

CVE-2020-23171

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-08-10 15:06:18
Last updated 2024-08-04 14:58:13
Assigner mitre
State PUBLISHED

Description

A vulnerability in all versions of Nim-lang allows unauthenticated attackers to write files to arbitrary directories via a crafted zip file with dot-slash characters included in the name of the crafted file.