CVE Published: 18/09/2021 |
CVE Updated: 16/09/2024 |
CVE Year: 2021 Source: TR-CERT |
Vendor: TUBITAK |
Product: Pardus Software Center Status : PUBLISHED
CVE-2021-3806 Description
A path traversal vulnerability on Pardus Software Center\'s "extractArchive" function could allow anyone on the same network to do a man-in-the-middle and write files on the system.
Metrics
CVSS Version: 3.1 |
Base Score: 5.3 MEDIUM Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L