Directory traversal vulnerability in zip.lib.php 0.1.1 in PEAR::Archive_Zip allows remote attackers to create and overwrite arbitrary files via certain crafted pathnames in a ZIP archive.
Link | Tags |
---|---|
http://www.securityfocus.com/archive/1/426153/100/0/threaded | mailing list |
http://www.securityfocus.com/archive/1/425967/100/0/threaded | mailing list |
http://www.hamid.ir/security/phpzip.txt | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/24972 | vdb entry |
http://securityreason.com/securityalert/486 | third party advisory |