Directory traversal vulnerability in Archive collectively operation utility Ver.2.10.1.0 and earlier allows an attacker to create or overwrite files by leading a user to expand a malicious ZIP archives.
References
| Link | Resource |
|---|---|
| http://www.eikisoft.com/release01.html | Release Notes Vendor Advisory |
| https://jvn.jp/en/jp/JVN73236007/index.html | Third Party Advisory |
Configurations
Information
Published : 2021-04-07 01:15
Updated : 2021-04-12 10:47
NVD link : CVE-2021-20692
Mitre link : CVE-2021-20692
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
eikisoft
- archive_collectively_operation_utility


