CVE-2025-63371

Milos Paripovic OneCommander 3.102.0.0 is vulnerable to Directory Traversal. The vulnerability resides in the ZIP file processing component, specifically in the functionality responsible for extracting and handling ZIP archive contents.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:onecommander:onecommander:3.102.0.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-11-19 21:15

Updated : 2025-12-11 19:13


NVD link : CVE-2025-63371

Mitre link : CVE-2025-63371

CVE.ORG link : CVE-2025-63371


JSON object : View

Products Affected

onecommander

  • onecommander
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')