BSCW groupware system 3.3 through 4.0.2 beta allows remote attackers to read or modify arbitrary files by uploading and extracting a tar file with a symlink into the data-bag space.
| Software | From | Fixed in |
|---|---|---|
| fraunhofer_fit / bscw | - | 4.0.2_beta.x |
| fraunhofer_fit / bscw | 3.3.1 | 3.3.1.x |
| fraunhofer_fit / bscw | 3.3 | 3.3.x |
| fraunhofer_fit / bscw | 3.4.1 | 3.4.1.x |
| fraunhofer_fit / bscw | 3.4.3 | 3.4.3.x |
| fraunhofer_fit / bscw | 4.0.1_beta | 4.0.1_beta.x |