Oval Definition:
oval:org.mitre.oval:def:619
Revision Date
:
2007-04-25
Version
:
18
Title
:
UnZip 5.0 Directory Traversal Vulnerability
Description
:
Directory traversal vulnerability in UnZip 5.50 allows attackers to overwrite arbitrary files via invalid characters between two . (dot) characters, which are filtered and result in a ".." sequence.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2003-0282
Platform(s)
:
Red Hat Linux 9
Product(s)
:
unzip
Definition Synopsis
Software section
Red Hat 9 is installed
AND
ix86 architecture
AND
unzip version is less than 5.50-33
AND
Configuration section
/usr/bin/unzip is executable
/usr/bin/unzip is executable
OR
/usr/bin/unzip is executable
OR
/usr/bin/unzip is executable
BACK