Vulnerabilities > Dotnetzip Semverd Project

DATE CVE VULNERABILITY TITLE RISK
2024-11-13 CVE-2024-48510 Path Traversal vulnerability in Dotnetzip.Semverd Project Dotnetzip.Semverd 1.11.0
Directory Traversal vulnerability in DotNetZip v.1.16.0 and before allows a remote attacker to execute arbitrary code via the src/Zip.Shared/ZipEntry.Extract.cs component NOTE: This vulnerability only affects products that are no longer supported by the maintainer.
network
low complexity
dotnetzip-semverd-project CWE-22
critical
9.8
2018-07-25 CVE-2018-1002205 Path Traversal vulnerability in Dotnetzip.Semverd Project Dotnetzip.Semverd
DotNetZip.Semvered before 1.11.0 is vulnerable to directory traversal, allowing attackers to write to arbitrary files via a ../ (dot dot slash) in a Zip archive entry that is mishandled during extraction.
local
low complexity
dotnetzip-semverd-project CWE-22
5.5