Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28605
HistoryDec 16, 2020 - 2:37 a.m.

Arbitrary File Write

2020-12-1602:37:38
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15
packwood mpxj
arbitrary file write
vulnerability
software
validation
inputstream
writing files

EPSS

0.001

Percentile

39.9%

Packwood MPXJ is vulnerable to arbitrary file write. The vulnerability exists because it does not properly validate the path from inputStream, leading to the writing of files outside of the target directory.

EPSS

0.001

Percentile

39.9%