Directory traversal vulnerability in PEAR::Archive_Tar 1.2, and other versions before 1.3.2, allows remote attackers to create and overwrite arbitrary files via certain crafted pathnames in a TAR archive.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2006-02-28 03:02
Updated : 2018-10-18 09:29
NVD link : CVE-2006-0931
Mitre link : CVE-2006-0931
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
pear
- pear_archive_tar