| Added |
CPE Configuration |
|
OR
*cpe:2.3:a:plexus-archiver_project:plexus-archiver:*:*:*:*:*:*:*:* versions up to (excluding) 3.6.0 |
| Added |
CPE Configuration |
|
OR
*cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
*cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
*cpe:2.3:o:redhat:enterprise_linux:7.5:*:*:*:*:*:*:*
*cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
*cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:* |
| Added |
CVSS V2 |
|
(AV:N/AC:M/Au:N/C:N/I:P/A:N) |
| Added |
CVSS V2 Metadata |
|
Victim must voluntarily interact with attack mechanism |
| Added |
CVSS V3 |
|
AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N |
| Added |
CWE |
|
CWE-22 |
| Changed |
Reference Type |
https://access.redhat.com/errata/RHSA-2018:1836 No Types Assigned |
https://access.redhat.com/errata/RHSA-2018:1836 Third Party Advisory |
| Changed |
Reference Type |
https://access.redhat.com/errata/RHSA-2018:1837 No Types Assigned |
https://access.redhat.com/errata/RHSA-2018:1837 Third Party Advisory |
| Changed |
Reference Type |
https://github.com/codehaus-plexus/plexus-archiver/commit/f8f4233508193b70df33759ae9dc6154d69c2ea8 No Types Assigned |
https://github.com/codehaus-plexus/plexus-archiver/commit/f8f4233508193b70df33759ae9dc6154d69c2ea8 Issue Tracking, Patch, Third Party Advisory |
| Changed |
Reference Type |
https://github.com/codehaus-plexus/plexus-archiver/pull/87 No Types Assigned |
https://github.com/codehaus-plexus/plexus-archiver/pull/87 Exploit, Issue Tracking, Patch, Third Party Advisory |
| Changed |
Reference Type |
https://github.com/snyk/zip-slip-vulnerability No Types Assigned |
https://github.com/snyk/zip-slip-vulnerability Exploit, Issue Tracking, Third Party Advisory |
| Changed |
Reference Type |
https://snyk.io/research/zip-slip-vulnerability No Types Assigned |
https://snyk.io/research/zip-slip-vulnerability Exploit, Third Party Advisory |
| Changed |
Reference Type |
https://snyk.io/vuln/SNYK-JAVA-ORGCODEHAUSPLEXUS-31680 No Types Assigned |
https://snyk.io/vuln/SNYK-JAVA-ORGCODEHAUSPLEXUS-31680 Exploit, Third Party Advisory |
| Changed |
Reference Type |
https://www.debian.org/security/2018/dsa-4227 No Types Assigned |
https://www.debian.org/security/2018/dsa-4227 Third Party Advisory |