Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:6575
HistoryJun 06, 2018 - 5:41 a.m.

Arbitrary File Write

2018-06-0605:41:04
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
3

0.023 Low

EPSS

Percentile

89.8%

Apache Hadoop Common is vulnerable to zip-slip vulnerability. The vulnerability exists when the attacker inputs a malicious zip archive with filenames including file traversal characters such as dot dot (…), leading to concatenation of file path locating outside of the destination folder.

References