A path validation issue in WhatsApp for iOS prior to v2.20.61 and WhatsApp Business for iOS prior to v2.20.61 could have allowed for directory traversal overwriting files when sending specially crafted docx, xlsx, and pptx files as attachments to messages.
References
Link | Resource |
---|---|
https://www.whatsapp.com/security/advisories/2020/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
05 Feb 2022, 00:06
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 4.3
v3 : 5.5 |
02 Feb 2022, 12:15
Type | Values Removed | Values Added |
---|---|---|
Summary | A path validation issue in WhatsApp for iOS prior to v2.20.61 and WhatsApp Business for iOS prior to v2.20.61 could have allowed for directory traversal overwriting files when sending specially crafted docx, xlsx, and pptx files as attachments to messages. |
Information
Published : 2020-10-06 18:15
Updated : 2024-02-04 21:23
NVD link : CVE-2020-1904
Mitre link : CVE-2020-1904
CVE.ORG link : CVE-2020-1904
JSON object : View
Products Affected
- whatsapp_business