Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-17715
HistoryDec 16, 2017 - 7:29 p.m.

Directory traversal

2017-12-1619:29:00
PRIOn knowledge base
www.prio-n.com
1

8.3 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

51.0%

The saveFile method in MediaController.java in the Telegram Messenger application before 2017-12-08 for Android allows directory traversal via a pathname obtained in a file-transfer request from a remote peer, as demonstrated by writing to tgnet.dat or tgnet.dat.bak.

CPENameOperatorVersion
telegram_messengereq< 2017128

8.3 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

51.0%

Related for PRION:CVE-2017-17715