Search: "widelands"

2 CVEs found

CVE-2011-1932
6.4 MEDIUM

Directory traversal vulnerability in io/filesystem/filesystem.cc in Widelands before 15.1 might allow remote attackers to overwrite arbitrary files via . (dot) characters in a pathname that is used fo...

Published: 2011-12-05
Products: 20
Vendors:
widelands
CVE-2011-4675
6.4 MEDIUM

The pathname canonicalization functionality in io/filesystem/filesystem.cc in Widelands before 15.1 expands leading ~ (tilde) characters to home-directory pathnames but does not restrict use of these ...

Published: 2011-12-05
Products: 20
Vendors:
widelands