Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

ARJ Software UNARJ Remote Directory Traversal Vulnerability

Reportedly ARJ Software UNARJ is affected by a remote directory traversal vulnerability. This issue is due to a failure of the application to properly sanitize or validate file names prior to compression or decompression.

This issue may allow an attacker to arbitrarily overwrite files with a user's privileges when a malicious compressed file is decompressed with the affected application.







 

Privacy Statement
Copyright 2008, SecurityFocus