Srikanth Reddy Lingala

2 exploits Active since Jul 2018
CVE-2018-1002202 NOMISEC MEDIUM WRITEUP
zip4j < 1.3.3 - Path Traversal via Zip Archive Entry Extraction
zip4j before 1.3.3 is vulnerable to directory traversal, allowing attackers to write to arbitrary files via a ../ (dot dot slash) in a Zip archive entry that is mishandled during extraction. This vulnerability is also known as 'Zip-Slip'.
CVSS 6.5
CVE-2018-1002202 NOMISEC MEDIUM WRITEUP
zip4j < 1.3.3 - Path Traversal via Zip Archive Entry Extraction
zip4j before 1.3.3 is vulnerable to directory traversal, allowing attackers to write to arbitrary files via a ../ (dot dot slash) in a Zip archive entry that is mishandled during extraction. This vulnerability is also known as 'Zip-Slip'.
CVSS 6.5