CVE-2020-28949

PEAR Archive_Tar Deserialization of Untrusted Data Vulnerability

7.8
CVSS 3.1
84.6 %
EPSS (current)
2022-08-25
KEV addition
No
Ransomware

Timeline

Publication, first public exploit and KEV addition on a day axis.

Key facts

Vendor / product: PEAR / Archive_Tar

Published: 2020-11-19 · Due (CISA): 2022-09-15

CWE: – · EU list: no

Exploit references (metadata only)

SourceReferenceTitleDate
metasploitexploit/multi/fileformat/archive_tar_arb_file_writeexploit/multi/fileformat/archive_tar_arb_file_write2020-11-17

References only — no downloads or instructions.

Sources