Directory traversal vulnerability in PentaZip 8.5.1.190 and PentaSuite-PRO 8.5.1.221 allows user-assisted remote attackers to extract files to arbitrary pathnames via a ../ (dot dot slash) in a filename.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Pentasuite-pro | Pentaware | 8.5.1.221 (including) | 8.5.1.221 (including) |
Pentazip | Pentaware | 8.5.1.190 (including) | 8.5.1.190 (including) |