VYPR
Unrated severityNVD Advisory· Published Apr 26, 2022· Updated Aug 3, 2024

tobesoft XPLATFORM Path Traversal Vulnerability

CVE-2021-26629

Description

A path traversal vulnerability in XPLATFORM's runtime archive function could lead to arbitrary file creation. When the .xzip archive file is decompressed, an arbitrary file can be d in the parent path by using the path traversal pattern ‘..\’.

Affected products

2
  • Tobesoft/XPLATFORMllm-fuzzy2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: unspecified

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.