Описание
Path Traversal in OWASP Dependency-Check
OWASP Dependency-Check before 3.2.0 allows attackers to write to arbitrary files via a crafted archive that holds directory traversal filenames.
Пакеты
Наименование
org.owasp:dependency-check-maven
maven
Затронутые версииВерсия исправления
< 3.2.0
3.2.0
Связанные уязвимости
CVSS3: 7.8
nvd
больше 7 лет назад
OWASP Dependency-Check before 3.2.0 allows attackers to write to arbitrary files via a crafted archive that holds directory traversal filenames.