Directory traversal vulnerability in DivX Player 2.6 and earlier allows remote attackers to overwrite arbitrary files via a .. (dot dot) in a filename in a ZIP file for a skin.
Link | Tags |
---|---|
http://secunia.com/advisories/13969 | third party advisory |
http://marc.info/?l=bugtraq&m=110642748517854&w=2 | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/19030 | vdb entry |
http://aluigi.altervista.org/adv/divxplayer-adv.txt | |
http://www.securityfocus.com/bid/12332 | vdb entry exploit |