296,147
Total vulnerabilities in the database
Directory traversal vulnerability in JCraft JSch before 0.1.54 on Windows, when the mode is ChannelSftp.OVERWRITE, allows remote SFTP servers to write to arbitrary files via a ..\ (dot dot backslash) in a response to a recursive GET command.
Software | From | Fixed in |
---|---|---|
jcraft / jsch | - | 0.1.53.x |
![]() |
- | 0.1.54 |