Description
Directory traversal vulnerability in cabextract before 1.1 allows remote attackers to overwrite arbitrary files via a cabinet file containing .. (dot dot) sequences in a filename.
Affected products
- cabextract_project / cabextract0.2 – 0.2
- cabextract_project / cabextract0.6 – 0.6
- cabextract_project / cabextract1.0 – 1.0