CVE-2014-0809: Path Traversal
Published Jan 24, 2014
·Updated
Directory traversal vulnerability in the Gapless Player SimZip (aka Simple Zip Viewer) application before 1.2.1 for Android allows remote attackers to overwrite or create arbitrary files via a crafted filename.
Affected Software
2 affected components
Gapless Player SimZip<=1.2
Gapless Player SimZip=1.1
Event History
Jan 24, 2014
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Data Sourced
via NVD·03:08 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-0809?
CVE-2014-0809 is considered a medium severity vulnerability due to its potential for data manipulation.
2
How do I fix CVE-2014-0809?
To fix CVE-2014-0809, update Gapless Player SimZip to version 1.2.1 or later.
3
What type of vulnerability is CVE-2014-0809?
CVE-2014-0809 is a directory traversal vulnerability.
4
Who is affected by CVE-2014-0809?
Users of Gapless Player SimZip versions prior to 1.2.1 on Android are affected by CVE-2014-0809.
5
Can CVE-2014-0809 allow remote attacks?
Yes, CVE-2014-0809 allows remote attackers to create or overwrite arbitrary files.