CVE-2007-1799

Directory traversal vulnerability in torrent.cpp in KTorrent before 2.1.3 only checks for the ".." string, which allows remote attackers to overwrite arbitrary files via modified ".." sequences in a torrent filename, as demonstrated by "../" sequences, due to an incomplete fix for CVE-2007-1384.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:joris_guisson:ktorrent:2.1.1:*:*:*:*:*:*:*
cpe:2.3:a:joris_guisson:ktorrent:2.1.2:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-04-02 22:19

Updated : 2025-04-09 00:30


NVD link : CVE-2007-1799

Mitre link : CVE-2007-1799

CVE.ORG link : CVE-2007-1799


JSON object : View

Products Affected

joris_guisson

  • ktorrent