Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-4134

Опубликовано: 30 авг. 2007
Источник: nvd
CVSS2: 6.8
EPSS Низкий

Описание

Directory traversal vulnerability in extract.c in star before 1.5a84 allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (slash slash dot dot) sequences in directory symlinks in a TAR archive.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:redhat:fedora:7:*:*:*:*:*:*:*

EPSS

Процентиль: 81%
0.01674
Низкий

6.8 Medium

CVSS2

Дефекты

CWE-22

Связанные уязвимости

ubuntu
почти 18 лет назад

Directory traversal vulnerability in extract.c in star before 1.5a84 allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (slash slash dot dot) sequences in directory symlinks in a TAR archive.

redhat
почти 18 лет назад

Directory traversal vulnerability in extract.c in star before 1.5a84 allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (slash slash dot dot) sequences in directory symlinks in a TAR archive.

debian
почти 18 лет назад

Directory traversal vulnerability in extract.c in star before 1.5a84 a ...

github
около 3 лет назад

Directory traversal vulnerability in extract.c in star before 1.5a84 allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (slash slash dot dot) sequences in directory symlinks in a TAR archive.

oracle-oval
почти 18 лет назад

ELSA-2007-0873: Moderate: star security update (MODERATE)

EPSS

Процентиль: 81%
0.01674
Низкий

6.8 Medium

CVSS2

Дефекты

CWE-22