Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in KArchive before 5.24, as used in KDE Frameworks, allows remote attackers to write to arbitrary files via a ../ (dot dot slash) in a filename in an archive file, related to KNewsstuff downloads.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
KDE KArchive 目录遍历漏洞
Vulnerability Description
KDE Frameworks是一个KDE应用程序作为技术基础库和软件框架的集合。KDE是Linux和Unix工作站的一款免费开放源代码X桌面管理程序,KDE提供通过KIO子系统支持各种网络协议。KDE KArchive是其中的一个文档管理器。 KDE Frameworks中使用的KArchive 5.24之前的版本中存在目录遍历漏洞。远程攻击者可借助归档文件的文件名中的‘../’利用该漏洞编写任意文件。
CVSS Information
N/A
Vulnerability Type
N/A