CVE-2006-0931

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
28/02/2006
Last modified:
03/04/2025

Description

Directory traversal vulnerability in PEAR::Archive_Tar 1.2, and other versions before 1.3.2, allows remote attackers to create and overwrite arbitrary files via certain crafted pathnames in a TAR archive.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:pear:pear_archive_tar:*:*:*:*:*:*:*:* 1.2 (including)
cpe:2.3:a:pear:pear_archive_tar:*:*:*:*:*:*:*:* 1.3.0 (including)
cpe:2.3:a:pear:pear_archive_tar:*:*:*:*:*:*:*:* 1.3.1 (including)