Vulnerabilities > PAX Project > PAX

DATE CVE VULNERABILITY TITLE RISK
2015-01-21 CVE-2015-1194 Link Following vulnerability in PAX Project PAX 1:20140703
pax 1:20140703 allows remote attackers to write to arbitrary files via a symlink attack in an archive.
4.3
2015-01-21 CVE-2015-1193 Path Traversal vulnerability in PAX Project PAX 1:20140703
Multiple directory traversal vulnerabilities in pax 1:20140703 allow remote attackers to write to arbitrary files via a (1) full pathname or (2) ..
network
low complexity
pax-project CWE-22
5.0