Suivre

(CVE-2022-30333) - An attacker is able to create files outside of the target extraction directory when an application or victim user extracts an untrusted RAR archive. If they can write to a known location, they are likely to be able to leverage it in a way leading to the execution of arbitrary commands on the system.

blog.sonarsource.com/zimbra-pr

Inscrivez-vous pour prendre part à la conversation
nanao

Comme le soleil, les machines ne se couchent jamais.