Description
Directory traversal vulnerability in the PharData class in PHP before 5.4.44, 5.5.x before 5.5.28, and 5.6.x before 5.6.12 allows remote attackers to write to arbitrary files via a .. (dot dot) in a ZIP archive entry that is mishandled during an extractTo call.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP Email Template PHP Object Injection (2.4.0)
LimeSurvey CVE-2019-16181 Vulnerability (CVE-2019-16181)
WordPress Plugin SendPress Newsletters Multiple Vulnerabilities (1.1.7.21)
MediaWiki Incorrect Authorization Vulnerability (CVE-2023-22945)
MyBB Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-9410)