CVE-2011-1932
6.4
MEDIUM
Directory traversal vulnerability in io/filesystem/filesystem.cc in Widelands before 15.1 might allow remote attackers to overwrite arbitrary files via . (dot) characters in a pathname that is used fo...
Published: 2011-12-05
Products: 20
Vendors:
widelands
widelands
CVE-2011-4675
6.4
MEDIUM
The pathname canonicalization functionality in io/filesystem/filesystem.cc in Widelands before 15.1 expands leading ~ (tilde) characters to home-directory pathnames but does not restrict use of these ...
Published: 2011-12-05
Products: 20
Vendors:
widelands
widelands