Impact
The flaw in CAI Content Credentials permits an attacker to create or overwrite files outside the intended extraction directory, a classic path traversal weakness. By exploiting this, a malicious archive can write any file that the application process can reach, potentially enabling configuration tampering, the installation of malicious binaries, or modification of critical system files.
Affected Systems
Adobe CAI Content Credentials versions c2pa-web@0.7.1, c2pa-v0.80.1 and all earlier releases are affected. Any installation of these libraries that accepts untrusted archives is vulnerable until an updated version that removes the pathname limitation is deployed.
Risk and Exploitability
With a CVSS score of 5.5 the vulnerability carries medium severity. The EPSS score is not available and the issue is not listed in CISA’s KEV catalog, indicating no documented active exploitation. However, the impact remains local because the attacker must prompt a victim to extract the crafted file; if the extraction runs with elevated privileges, the attacker could write protected files and elevate the consequences.
OpenCVE Enrichment