Liulishuo
liulishuo
1 CVE • 1 product
Products (1)
Click to collapseToggle
Products (1)
Click to collapse
CVEs (1)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
util/FileDownloadUtils.java in FileDownloader 1.7.3 does not check an attachment's name. If an attacker places "../" in the file name, the file can be stored in an unintended directory because of Directory Traversal. |