CVE-2019-13623
Last modified
CVE-2019-13623 is a vulnerability of currently unknown severity. In NSA Ghidra before 9.1, path traversal can occur in RestoreTask.java (from the package ghidra.app.plugin.core.archive) via an archive with an executable file that has an initial ../ in its filename. This allows attackers to overwrite arbitrary files in scenarios where an intermediate analysis result is archived for sharing with other persons. EPSS estimates a 4.96% chance of exploitation in the next 30 days.
Description
In NSA Ghidra before 9.1, path traversal can occur in RestoreTask.java (from the package ghidra.app.plugin.core.archive) via an archive with an executable file that has an initial ../ in its filename. This allows attackers to overwrite arbitrary files in scenarios where an intermediate analysis result is archived for sharing with other persons. To achieve arbitrary code execution, one approach is to overwrite some critical Ghidra modules, e.g., the decompile module.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Nsa | Ghidra | <= 9.0.4 |
References
- http://blog.fxiao.me/ghidra/Exploit, Third Party Advisory
- https://github.com/NationalSecurityAgency/ghidra/issues/789Exploit, Third Party Advisory
- http://blog.fxiao.me/ghidra/Exploit, Third Party Advisory
- https://github.com/NationalSecurityAgency/ghidra/issues/789Exploit, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2019-13623?
How severe is CVE-2019-13623?
How do I fix CVE-2019-13623?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2019
- CVE-2019-13615libebml before 1.3.6, as used in the MKV module in VideoLAN …
- CVE-2019-13616SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x throug…8.1
- CVE-2019-13617njs through 0.3.3, used in NGINX, has a heap-based buffer ov…
- CVE-2019-13618In GPAC before 0.8.0, isomedia/isom_read.c in libgpac.a has …
- CVE-2019-13619In Wireshark 3.0.0 to 3.0.2, 2.6.0 to 2.6.9, and 2.4.0 to 2.…7.5
- CVE-2019-1362An elevation of privilege vulnerability exists in Windows wh…7.8
- CVE-2019-13624In ONOS 1.15.0, apps/yang/web/src/main/java/org/onosproject/…
- CVE-2019-13625NSA Ghidra before 9.0.1 allows XXE when a project is opened …
- CVE-2019-13626SDL (Simple DirectMedia Layer) 2.x through 2.0.9 has a heap-…6.5
- CVE-2019-13627It was discovered that there was a ECDSA timing attack in th…6.3
- CVE-2019-13628wolfSSL and wolfCrypt 4.0.0 and earlier (when configured wit…4.7
- CVE-2019-13629MatrixSSL 4.2.1 and earlier contains a timing side channel i…5.9
Are you affected by CVE-2019-13623?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
