#VU22928 Path traversal in Vaccine - CVE-2019-13157
Published: November 22, 2019
Vaccine
Naver
Description
The vulnerability allows a remote attacker to perform directory traversal attacks.
The vulnerability exists in the "nsGreen.dll" due to input validation error when processing directory traversal sequences in a filename. A remote attacker can send a specially crafted HTTP request and overwrite arbitrary files within nsz archive.