Back

CVE-2018-1000544

CRITICAL

rubyzip gem rubyzip version 1.2.1 and earlier contains a Directory Traversal vulnerability in Zip::File component that can result in write arbitrary files to the filesystem. This attack appear to be exploitable via If a site allows uploading of .zip files , an attacker can upload a malicious file that contains symlinks or files with absolute pathnames "../" to write arbitrary files to the filesystem..

Published: Jun 26, 2018 Modified: Jun 17, 2026
CWE-59 CWE-434

CVSS Metrics

CVSSv3
Attack Vector: NETWORK Attack Complexity: LOW Privileges Required: NONE User Interaction: NONE Scope: UNCHANGED Confidentiality Impact: HIGH Integrity Impact: HIGH Availability Impact: HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected Products (4)

Vendor Product Version
rubyzip_project rubyzip *
debian debian_linux 8.0
debian debian_linux 9.0
redhat cloudforms 4.6

GitHub Security Advisory GHSA-vqcq-mrmw-mcmg

Rubyzip gem contains a Directory Traversal vulnerability in zip file component

rubygems rubyzip <= 1.2.1 Fixed: 1.2.2

Risk Scores

CVSS Score 9.8 / 10
EPSS Score 4.59%

Top 9% most likely to be exploited

Threat Score 40.6 / 100

Data Sources

NVD EPSS GitHub