Lucene search

K
cvelistMitreCVELIST:CVE-2020-35460
HistoryDec 14, 2020 - 10:48 p.m.

CVE-2020-35460

2020-12-1422:48:19
mitre
www.cve.org
7
packwood mpxj
directory traversal
zip stream handler
arbitrary locations
file writing

AI Score

7.3

Confidence

High

EPSS

0.001

Percentile

39.9%

common/InputStreamHelper.java in Packwood MPXJ before 8.3.5 allows directory traversal in the zip stream handler flow, leading to the writing of files to arbitrary locations.

AI Score

7.3

Confidence

High

EPSS

0.001

Percentile

39.9%