Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ww7q-w3g7-9cgc

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A directory traversal vulnerability in SharpZipLib used in the upgrade service in B&R Automation Studio versions 4.0.x, 4.1.x and 4.2.x allow unauthenticated users to write to certain local directories. The vulnerability is also known as zip slip.

A directory traversal vulnerability in SharpZipLib used in the upgrade service in B&R Automation Studio versions 4.0.x, 4.1.x and 4.2.x allow unauthenticated users to write to certain local directories. The vulnerability is also known as zip slip.

EPSS

Процентиль: 72%
0.00699
Низкий

Связанные уязвимости

CVSS3: 5.5
nvd
почти 6 лет назад

A directory traversal vulnerability in SharpZipLib used in the upgrade service in B&R Automation Studio versions 4.0.x, 4.1.x and 4.2.x allow unauthenticated users to write to certain local directories. The vulnerability is also known as zip slip.

EPSS

Процентиль: 72%
0.00699
Низкий