PT-2026-48535 · Bit7Z · Bit7Z
CVE-2026-45384
·
Published
2026-06-10
·
Updated
2026-06-10
CVSS v3.1
6.1
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:L |
Name of the Vulnerable Software and Affected Versions
bit7z versions prior to 4.0.12
Description
An arbitrary file overwrite issue exists during archive updates. This occurs due to a symlink attack targeting predictable temporary files. A symlink is a special type of file that serves as a reference to another file or directory.
Recommendations
Update to version 4.0.12.
Exploit
Fix
Link Following
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Bit7Z