Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2006-0931

Опубликовано: 28 фев. 2006
Источник: debian
EPSS Низкий

Описание

Directory traversal vulnerability in PEAR::Archive_Tar 1.2, and other versions before 1.3.2, allows remote attackers to create and overwrite arbitrary files via certain crafted pathnames in a TAR archive.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
php5removedpackage
php4removedpackage

Примечания

  • is this really a vulnerability in pear? it seems it should be a bug

  • in any application not checking for such archives.

  • Lack of a security feature is not a vulnerability

EPSS

Процентиль: 80%
0.01438
Низкий

Связанные уязвимости

ubuntu
больше 19 лет назад

Directory traversal vulnerability in PEAR::Archive_Tar 1.2, and other versions before 1.3.2, allows remote attackers to create and overwrite arbitrary files via certain crafted pathnames in a TAR archive.

nvd
больше 19 лет назад

Directory traversal vulnerability in PEAR::Archive_Tar 1.2, and other versions before 1.3.2, allows remote attackers to create and overwrite arbitrary files via certain crafted pathnames in a TAR archive.

CVSS3: 9.1
github
больше 3 лет назад

PEAR::Archive_Tar Directory Traversal vulnerability

EPSS

Процентиль: 80%
0.01438
Низкий