CVE-2018-1261 Information

Description

Spring-integration-zip versions prior to 1.0.1 exposes an arbitrary file write vulnerability which can be achieved using a specially crafted zip archive (affects other archives as well bzip2 tar xz war cpio 7z) that holds path traversal filenames. So when the filename gets concatenated to the target extraction directory the final path ends up outside of the target folder.

CVSS Vector

CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N

Reference

http://www.securityfocus.com/bid/104178 https://pivotal.io/security/cve-2018-1261

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction Required

NONE

Scope

REQUIRED

Confidentiality Impact

UNCHANGED

Integrity Impact

NONE

Availability Impact

HIGH

Base Score

NONE

Base Severity

4.7

Share on: