CVE-2018-8909 – The Wire application before 2018-03-07 for Android allows attackers to write to pathnames …

0

Vuln ID: CVE-2018-8909

Published: 2018-03-22  06:29:00Z

Description: The Wire application before 2018-03-07 for Android allows attackers to write to pathnames outside of the downloads directory via a ../ in a filename of a received file, related to AssetService.scala.

Source: NVD.NIST.GOV