CVE-2006-1323
WinHKI < 1.6 - Directory Traversal and Arbitrary File Write via Archive Extraction
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-1323. PoCs published by [email protected].
AI-analyzed exploit summary The provided text describes a directory traversal vulnerability in an unspecified application when processing malformed archives. It references CVE-2006-1323 and notes potential for file overwrite or placement in the context of the user running the affected software.
Description
Directory traversal vulnerability in WinHKI 1.6 and earlier allows user-assisted attackers to overwrite arbitrary files via a (1) RAR, (2) TAR, (3) ZIP, or (4) TAR.GZ archive with a file whose file name contains ".." sequences.
Exploits (1)
The provided text describes a directory traversal vulnerability in an unspecified application when processing malformed archives. It references CVE-2006-1323 and notes potential for file overwrite or placement in the context of the user running the affected software.