Vulnerabilities (CVE)

Filtered by vendor Pax Project Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-1194 1 Pax Project 1 Pax 2024-11-21 4.3 MEDIUM N/A
pax 1:20140703 allows remote attackers to write to arbitrary files via a symlink attack in an archive.
CVE-2015-1193 1 Pax Project 1 Pax 2024-11-21 5.0 MEDIUM N/A
Multiple directory traversal vulnerabilities in pax 1:20140703 allow remote attackers to write to arbitrary files via a (1) full pathname or (2) .. (dot dot) in an archive.