Skip to main content

Vendor/product archive

flamingoim_project / flamingoim CVEs

Beta · best-effort

1 CVEs tagged to flamingoim_project / flamingoim0 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2020-35284

Published Dec 26, 2020

Flamingo (aka FlamingoIM) through 2020-09-29 allows ../ directory traversal because the only ostensibly unpredictable part of a file-transfer request is an MD5 computation; howeve…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-1 of 1 CVEsPage 1 of 1