CVE-2019-13241

Published
View on NVD ↗
CVSS v3
7.8
HIGH
CVSS v2
6.8
MEDIUM
Affected
1
PROJECT

Description

FlightCrew v0.9.2 and older are vulnerable to a directory traversal, allowing attackers to write arbitrary files via a ../ (dot dot slash) in a ZIP archive entry that is mishandled during extraction.

Automatically exported from code.google.com/p/flightcrew
GitHubGitHub
36