Количество 10
Количество 10
CVE-2018-18586
chmextract.c in the chmextract sample program, as distributed with libmspack before 0.8alpha, does not protect against absolute/relative pathnames in CHM files, leading to Directory Traversal. NOTE: the vendor disputes that this is a libmspack vulnerability, because chmextract.c was only intended as a source-code example, not a supported application
CVE-2018-18586
chmextract.c in the chmextract sample program, as distributed with libmspack before 0.8alpha, does not protect against absolute/relative pathnames in CHM files, leading to Directory Traversal. NOTE: the vendor disputes that this is a libmspack vulnerability, because chmextract.c was only intended as a source-code example, not a supported application
CVE-2018-18586
chmextract.c in the chmextract sample program, as distributed with libmspack before 0.8alpha, does not protect against absolute/relative pathnames in CHM files, leading to Directory Traversal. NOTE: the vendor disputes that this is a libmspack vulnerability, because chmextract.c was only intended as a source-code example, not a supported application
CVE-2018-18586
chmextract.c in the chmextract sample program, as distributed with lib ...
openSUSE-SU-2022:0069-2
Security update for libmspack
openSUSE-SU-2022:0069-1
Security update for libmspack
SUSE-SU-2022:4287-1
Security update for libmspack
SUSE-SU-2022:0069-2
Security update for libmspack
SUSE-SU-2022:0069-1
Security update for libmspack
GHSA-jcvf-2rhc-m6h8
** DISPUTED ** chmextract.c in the chmextract sample program, as distributed with libmspack before 0.8alpha, does not protect against absolute/relative pathnames in CHM files, leading to Directory Traversal. NOTE: the vendor disputes that this is a libmspack vulnerability, because chmextract.c was only intended as a source-code example, not a supported application.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-18586 chmextract.c in the chmextract sample program, as distributed with libmspack before 0.8alpha, does not protect against absolute/relative pathnames in CHM files, leading to Directory Traversal. NOTE: the vendor disputes that this is a libmspack vulnerability, because chmextract.c was only intended as a source-code example, not a supported application | CVSS3: 5.3 | 1% Низкий | больше 7 лет назад | |
CVE-2018-18586 chmextract.c in the chmextract sample program, as distributed with libmspack before 0.8alpha, does not protect against absolute/relative pathnames in CHM files, leading to Directory Traversal. NOTE: the vendor disputes that this is a libmspack vulnerability, because chmextract.c was only intended as a source-code example, not a supported application | CVSS3: 5.3 | 1% Низкий | больше 7 лет назад | |
CVE-2018-18586 chmextract.c in the chmextract sample program, as distributed with libmspack before 0.8alpha, does not protect against absolute/relative pathnames in CHM files, leading to Directory Traversal. NOTE: the vendor disputes that this is a libmspack vulnerability, because chmextract.c was only intended as a source-code example, not a supported application | CVSS3: 5.3 | 1% Низкий | больше 7 лет назад | |
CVE-2018-18586 chmextract.c in the chmextract sample program, as distributed with lib ... | CVSS3: 5.3 | 1% Низкий | больше 7 лет назад | |
openSUSE-SU-2022:0069-2 Security update for libmspack | 1% Низкий | почти 4 года назад | ||
openSUSE-SU-2022:0069-1 Security update for libmspack | 1% Низкий | около 4 лет назад | ||
SUSE-SU-2022:4287-1 Security update for libmspack | 1% Низкий | около 3 лет назад | ||
SUSE-SU-2022:0069-2 Security update for libmspack | 1% Низкий | почти 4 года назад | ||
SUSE-SU-2022:0069-1 Security update for libmspack | 1% Низкий | около 4 лет назад | ||
GHSA-jcvf-2rhc-m6h8 ** DISPUTED ** chmextract.c in the chmextract sample program, as distributed with libmspack before 0.8alpha, does not protect against absolute/relative pathnames in CHM files, leading to Directory Traversal. NOTE: the vendor disputes that this is a libmspack vulnerability, because chmextract.c was only intended as a source-code example, not a supported application. | CVSS3: 5.3 | 1% Низкий | больше 3 лет назад |
Уязвимостей на страницу