CVE-2024-48510
13.11.2024, 15:15
Directory Traversal vulnerability in DotNetZip v.1.16.0 and before allows a remote attacker to execute arbitrary code via the src/Zip.Shared/ZipEntry.Extract.cs component NOTE: This vulnerability only affects products that are no longer supported by the maintainer.
Vendor | Product | Version |
---|---|---|
mihula | prodotnetzip | 𝑥 < 1.19.0 |
dotnetzip.semverd_project | dotnetzip.semverd | 1.10.1 ≤ 𝑥 ≤ 1.16.0 |
𝑥
= Vulnerable software versions
References