Skip to main content

Vendor archive

flamingoim_project CVEs

Beta · best-effort

1 CVEs tagged to vendor flamingoim_project0 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2020-35284

Published Dec 26, 2020

Flamingo (aka FlamingoIM) through 2020-09-29 allows ../ directory traversal because the only ostensibly unpredictable part of a file-transfer request is an MD5 computation; howeve…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-1 of 1 CVEsPage 1 of 1