A path validation issue in WhatsApp for iOS prior to v2.20.61 and WhatsApp Business for iOS prior to v2.20.61 could have allowed for directory traversal overwriting files when sending specially crafted docx, xlsx, and pptx files as attachments to messages.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.whatsapp.com/security/advisories/2020/ |
History
No history.
MITRE
Status: PUBLISHED
Assigner: facebook
Published: 2020-10-06T17:35:26
Updated: 2024-08-04T06:54:00.435Z
Reserved: 2019-12-02T00:00:00
Link: CVE-2020-1904
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2020-10-06T18:15:16.203
Modified: 2022-02-05T00:06:07.563
Link: CVE-2020-1904
Redhat
No data.