CVE-2010-0012

Directory traversal vulnerability in libtransmission/metainfo.c in Transmission 1.22, 1.34, 1.75, and 1.76 allows remote attackers to overwrite arbitrary files via a .. (dot dot) in a pathname within a .torrent file.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:transmissionbt:transmission:1.34:*:*:*:*:*:*:*
cpe:2.3:a:transmissionbt:transmission:1.75:*:*:*:*:*:*:*
cpe:2.3:a:transmissionbt:transmission:1.76:*:*:*:*:*:*:*
cpe:2.3:a:transmissionbt:transmission:1.22:*:*:*:*:*:*:*

Information

Published : 2010-01-08 17:30

Updated : 2017-08-17 01:31


NVD link : CVE-2010-0012

Mitre link : CVE-2010-0012


JSON object : View

Products Affected

transmissionbt

  • transmission
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')