Rasa X before 0.42.4 allows... CVE-2021-42556

4.3 AV AC AU C I A
发布: 2021-10-22
修订: 2024-11-21

Rasa X before 0.42.4 allows Directory Traversal during archive extraction. In the functionality that allows a user to load a trained model archive, an attacker has arbitrary write capability within specific directories via a crafted archive file.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息