CVE

Id
13590  
CVE No.
CVE-2005-2384  
Status
Candidate  
Description
Directory traversal vulnerability in a third-party compression library (UNACEV2.DLL), as used in avast! Antivirus Home/Professional Edition 4.6.665 and Server Edition 4.6.460, allows remote attackers to write arbitrary files via an ACE archive containing filenames with (1) .. or (2) absolute pathnames.  
Phase
Assigned (20050727)  
Votes
None (candidate not yet proposed)  
Comments