Lucene search

K
cvelistMitreCVELIST:CVE-2017-17715
HistoryDec 16, 2017 - 7:00 p.m.

CVE-2017-17715

2017-12-1619:00:00
mitre
www.cve.org
3

AI Score

8.5

Confidence

High

EPSS

0.001

Percentile

50.9%

The saveFile method in MediaController.java in the Telegram Messenger application before 2017-12-08 for Android allows directory traversal via a pathname obtained in a file-transfer request from a remote peer, as demonstrated by writing to tgnet.dat or tgnet.dat.bak.

AI Score

8.5

Confidence

High

EPSS

0.001

Percentile

50.9%

Related for CVELIST:CVE-2017-17715