CVE-2005-3030
Directory traversal vulnerability in the archive decompression library in AhnLab V3Pro 2004 build 6.0.0.383, V3 VirusBlock 2005 build 6.0.0.383, and V3Net for Windows Server 6.0 build 6.0.0.383 allows remote attackers to write arbitrary files via a ..
Does this matter?
Lower severity and a low EPSS score (3.49%). Track it; it rarely justifies an emergency change on its own.
Description
Directory traversal vulnerability in the archive decompression library in AhnLab V3Pro 2004 build 6.0.0.383, V3 VirusBlock 2005 build 6.0.0.383, and V3Net for Windows Server 6.0 build 6.0.0.383 allows remote attackers to write arbitrary files via a .. (dot dot) in the filename in a compressed archive.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
- EPSS
- 3.49% probability · 88th percentile
- CISA KEV
- Not listed
- Affected
- ahnlab/v3 virusblock 2005 · ahnlab/v3net · ahnlab/v3pro 2004
- Source
- cve@mitre.org
References
- http://info.ahnlab.com/english/advisory/01.htmlPatch, Vendor Advisory
- http://marc.info/?l=bugtraq&m=112680062609377&w=2
- http://secunia.com/advisories/15674/Patch, Vendor Advisory
- http://secunia.com/secunia_research/2005-17/advisory/Patch, Vendor Advisory
- http://www.securityfocus.com/bid/14848Patch
- http://info.ahnlab.com/english/advisory/01.htmlPatch, Vendor Advisory
- http://marc.info/?l=bugtraq&m=112680062609377&w=2
- http://secunia.com/advisories/15674/Patch, Vendor Advisory
- http://secunia.com/secunia_research/2005-17/advisory/Patch, Vendor Advisory
- http://www.securityfocus.com/bid/14848Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.