ZeroHour

CVE-2020-23172

PoC
CVSS 3.1
5.5 medium
EPSS
<1%p53
Published
()
Modified
Description

A vulnerability in all versions of Kuba allows attackers to overwrite arbitrary files in arbitrary directories with crafted Zip files due to improper validation of file paths in .zip archives.

Vendors
kuba project
Products
kuba
Weakness
CWE-22
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.