Summary
Various issues in bbot's unarchive.py
allow a malicious site to cause bbot to write arbitrary files to arbitrary locations. This can be used to achieve Remote Code Execution (RCE).
Impact
A user who uses bbot to scan a malicious webserver may have arbitrary code executed on their system.
Summary
Various issues in bbot's
unarchive.py
allow a malicious site to cause bbot to write arbitrary files to arbitrary locations. This can be used to achieve Remote Code Execution (RCE).Impact
A user who uses bbot to scan a malicious webserver may have arbitrary code executed on their system.