CVE-2020-36193
Known Exploited (CISA KEV)HIGH
7.5
CVSS Severity Score
Vulnerability Description
Tar.php in Archive_Tar through 1.4.11 allows write operations with Directory Traversal due to inadequate checking of symbolic links, a related issue to CVE-2020-28948.
Affected Platforms (CPE)
π¦
Php
Archive Tar
<= 1.4.11π»
Fedoraproject
Fedora
= 32π»
Fedoraproject
Fedora
= 33π»
Fedoraproject
Fedora
= 34π»
Fedoraproject
Fedora
= 35π»
Debian
Debian Linux
= 9.0π»
Debian
Debian Linux
= 10.0π¦
Drupal
Drupal
>= 7.0 and < 7.78π¦
Drupal
Drupal
>= 8.9.0 and < 8.9.13π¦
Drupal
Drupal
>= 9.0.0 and < 9.0.11π¦
Drupal
