← Back

CVE-2004-0235

nvd nist
Published: Aug 18, 2004Modified: Apr 16, 2026

JSON object

Loading...
6.4
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:N
Exploitability: 10.0 / Impact: 4.9
Source: NVD

Description

Multiple directory traversal vulnerabilities in LHA 1.14 allow remote attackers or local users to create arbitrary files via an LHA archive containing filenames with (1) .. sequences or (2) absolute pathnames with double leading slashes ("//absolute/path").

Affected (50)

Show all products
1 product
Mailsweeper
5 products
F Secure Anti Virus
F Secure For Firewalls
F Secure Internet Security
F Secure Personal Express
Internet Gatekeeper
1 product
Winrar
2 products
Lha
Fedora Core
1 product
Propack
1 product
Cgpmcafee
Lha
1 product
Winzip
Configuration A
49 vulnerable
Vulnerable SoftwareAffected Versions
Clearswift
Version 4.0
Version 4.1
Version 4.2
Version 4.3.10
Version 4.3.11
Version 4.3.13
Version 4.3.3
Version 4.3.4
Version 4.3.5
Version 4.3.6
Version 4.3.6_sp1
Version 4.3.7
Version 4.3.8
Version 4.3
F Secure
Version 2003
Version 2004
Version 4.51
Version 4.51
Version 4.51
Version 4.52
Version 4.52
Version 4.52
Version 4.60
Version 5.41
Version 5.41
Version 5.41
Version 5.42
Version 5.42
Version 5.42
Version 5.52
Version 5.5
Version 6.21
Version 6.20
F Secure
Version 2003
Version 2004
F Secure
Version 4.5
Version 4.6
Version 4.7
F Secure
Version 6.31
Version 6.32
Version 3.20
Version 1.14i-9
Sgi
Version 2.4
Version 3.0
Version 3.2
Tsugio Okamoto
Version 1.14
Version 1.15
Version 1.17
Version 9.0
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Version core_1.0

References (26)

Source: cve@mitre.org
ExploitPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.