PT-2018-8859 · Rtsoft · Dink Smallwood Hd+2

Beuc

+2

·

Published

2018-06-12

·

Updated

2019-03-01

·

CVE-2018-0496

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions DFArc versions prior to 3.14 DFArc2 versions prior to 3.14 Dink Smallwood HD versions prior to 3.14
Description The issue is related to directory traversal in the D-Mod extractor, which can be exploited by an attacker to overwrite arbitrary files on the user's system.
Recommendations For DFArc versions prior to 3.14, update to version 3.14 or later. For DFArc2 versions prior to 3.14, update to version 3.14 or later. For Dink Smallwood HD versions prior to 3.14, update to version 3.14 or later.

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-0496
DLA-1686-1
MGASA-2018-0287

Affected Products

Dfarc
Dfarc2
Dink Smallwood Hd