CVE-2007-1799

Directory traversal vulnerability in torrent.cpp in KTorrent before 2.1.3 only checks for the ".." string, which allows remote attackers to overwrite arbitrary files via modified ".." sequences in a torrent filename, as demonstrated by "../" sequences, due to an incomplete fix for CVE-2007-1384.
Configurations

Configuration 1

cpe:2.3:a:joris_guisson:ktorrent:2.1.1:*:*:*:*:*:*:*
cpe:2.3:a:joris_guisson:ktorrent:2.1.2:*:*:*:*:*:*:*

Information

Published : 2007-04-02 10:19

Updated : 2017-07-29 01:30


NVD link : CVE-2007-1799

Mitre link : CVE-2007-1799

Products Affected
No products.