MEDIUM · 5.0

CVE-2005-3030

Directory traversal vulnerability in the archive decompression library in AhnLab V3Pro 2004 build 6.0.0.383, V3 VirusBlock 2005 build 6.0.0.383, and V3Net for Windows Server 6.0 build 6.0.0.383 allows...

Vulnerability Description

Directory traversal vulnerability in the archive decompression library in AhnLab V3Pro 2004 build 6.0.0.383, V3 VirusBlock 2005 build 6.0.0.383, and V3Net for Windows Server 6.0 build 6.0.0.383 allows remote attackers to write arbitrary files via a .. (dot dot) in the filename in a compressed archive.

CVSS Score

5.0

MEDIUM

AV:N/AC:L/Au:N/C:N/I:P/A:N
Confidentiality
NONE
Integrity
PARTIAL
Availability
NONE

Affected Products

VendorProductVersions
AhnlabV3 Virusblock 20056.0.0.383
AhnlabV3Net6.0.0.383
AhnlabV3Pro 20046.0.0.383

References

FAQ

What is CVE-2005-3030?

CVE-2005-3030 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Directory traversal vulnerability in the archive decompression library in AhnLab V3Pro 2004 build 6.0.0.383, V3 VirusBlock 2005 build 6.0.0.383, and V3Net for Windows Server 6.0 build 6.0.0.383 allows...

How severe is CVE-2005-3030?

CVE-2005-3030 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2005-3030?

Check the references section above for vendor advisories and patch information. Affected products include: Ahnlab V3 Virusblock 2005, Ahnlab V3Net, Ahnlab V3Pro 2004.