Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2013-5648
Description:Absolute path traversal vulnerability in the handleStartDataFile function in DigiDocSAXParser.c in libdigidoc 3.6.0.0, as used in ID- software before 3.7.2 and other products, allows remote attackers to overwrite arbitrary files via a filename beginning with / (slash) or \ (backslash) in a DDOC file.
Test IDs: 1.3.6.1.4.1.25623.1.1.10.2013.0268  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2013-5648




© 1998-2025 E-Soft Inc. All rights reserved.