Zip Slip Directory Traversal Vulnerability in Halo V1.1.3

Zip Slip Directory Traversal Vulnerability in Halo V1.1.3

CVE-2020-21522 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

An issue was discovered in halo V1.1.3. A Zip Slip Directory Traversal Vulnerability in the backend,the attacker can overwrite some files, such as ftl files, .bashrc files in the user directory, and finally get the permissions of the operating system.

Learn more about our User Device Pen Test.