CVE-2018-1261

Published May 11, 2018

Last updated 3 days ago

Overview

Description
Spring-integration-zip versions prior to 1.0.1 exposes an arbitrary file write vulnerability, which can be achieved using a specially crafted zip archive (affects other archives as well, bzip2, tar, xz, war, cpio, 7z) that holds path traversal filenames. So when the filename gets concatenated to the target extraction directory, the final path ends up outside of the target folder.
Source
security_alert@emc.com
NVD status
Modified

Risk scores

CVSS 3.1

Type
Primary
Base score
4.7
Impact score
3.6
Exploitability score
1
Vector string
CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N
Severity
MEDIUM

CVSS 2.0

Type
Primary
Base score
4
Impact score
4.9
Exploitability score
4.9
Vector string
AV:N/AC:H/Au:N/C:N/I:P/A:P

Weaknesses

nvd@nist.gov
CWE-22

Social media

Hype score
Not currently trending

Configurations