{"id":"CVE-2016-0784","description":"Directory traversal vulnerability in the Import/Export System Backups functionality in Apache OpenMeetings before 3.1.1 allows remote authenticated administrators to write to arbitrary files via a .. (dot dot) in a ZIP archive entry.","cvssScore":6.5,"cvssVersion":"3.0","cvssVector":"CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N","cvssMetrics":[{"version":"3.0","score":6.5,"severity":"MEDIUM","vector":"CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N","source":"nvd@nist.gov","sourceName":"NVD","type":"Primary"},{"version":"2.0","score":4,"vector":"AV:N/AC:L/Au:S/C:N/I:P/A:N","source":"nvd@nist.gov","sourceName":"NVD","type":"Primary"}],"cwes":["CWE-22"],"resolved":"MITIGATED-BY-RASP","published":"2016-04-11","lastModified":"2026-06-17","affectedProducts":[{"vendor":"apache","product":"openmeetings","versionEnd":"\u003c=3.1.0"}],"totalAffectedProducts":1,"references":[{"url":"https://github.com/apache/openmeetings/commit/fbab8891d96f3352c37f1be303d9c9a685aa6847","source":"osv","tags":["WEB"]},{"url":"https://github.com/apache/openmeetings","source":"osv","tags":["PACKAGE"]},{"url":"https://web.archive.org/web/20160330085718/http://haxx.ml/post/141655340521/all-your-meetings-are-belong-to-us-remote-code","source":"osv","tags":["WEB"]},{"url":"https://web.archive.org/web/20160617190447/https://www.apache.org/dist/openmeetings/3.1.1/CHANGELOG","source":"osv","tags":["WEB"]},{"url":"https://web.archive.org/web/20201209041006/http://www.securityfocus.com/archive/1/537929/100/0/threaded","source":"osv","tags":["WEB"]},{"url":"https://web.archive.org/web/20201221104133/http://packetstormsecurity.com/files/136484/Apache-OpenMeetings-3.1.0-Path-Traversal.html","source":"osv","tags":["WEB"]},{"url":"https://www.exploit-db.com/exploits/39642","source":"osv","tags":["WEB"]},{"url":"http://openmeetings.apache.org/security.html","source":"osv","tags":["WEB"]},{"url":"http://www.openwall.com/lists/oss-security/2016/03/25/2","source":"osv","tags":["WEB"]},{"url":"http://haxx.ml/post/141655340521/all-your-meetings-are-belong-to-us-remote-code","source":"secalert@redhat.com"}],"reasoning":{"decidingSource":"secure-rule-match","decidingReason":"Promoted to MITIGATED-BY-RASP (security rule): this CVE's weakness (CWE-22: Path Traversal) can be mitigated by an ARMR path-traversal security rule that blocks this class of attack at the JVM level, without requiring a CVE-specific patch.","verdicts":[{"rule":"rejected","stage":"identity","outcome":"no-match"},{"rule":"armr-patch-file","stage":"scope","outcome":"no-match"},{"rule":"armr-secure-rule-file","stage":"scope","outcome":"no-match"},{"rule":"manual-classification","stage":"scope","outcome":"no-match"},{"rule":"h2-history","stage":"scope","outcome":"no-match"},{"rule":"non-java-upstream","stage":"scope","outcome":"no-match"},{"rule":"oracle-component","stage":"scope","outcome":"no-match"},{"rule":"osv-maven","stage":"scope","outcome":"matched","status":"QUEUED-FOR-REVIEW","detail":"Maven packages: org.apache.openmeetings:openmeetings-install"},{"rule":"patch-hint","stage":"disposition","outcome":"no-match"},{"rule":"open-source-maven","stage":"disposition","outcome":"matched","status":"MITIGATION-CANDIDATE","detail":"Open-source Maven artifact indexed by OSV (Maven packages: org.apache.openmeetings:openmeetings-install). The source is public, which makes an ARMR patch rule a candidate; nothing here establishes that one can be written."},{"rule":"poc-derivable","stage":"disposition","outcome":"skipped"},{"rule":"no-exploit","stage":"disposition","outcome":"skipped"},{"rule":"secure-rule-match","stage":"disposition","outcome":"matched","status":"MITIGATED-BY-RASP","detail":"CWE-22 (Path Traversal) is mitigable by an ARMR path-traversal security rule.","decisive":true},{"rule":"below-action-threshold","stage":"disposition","outcome":"skipped"},{"rule":"no-exploit-published","stage":"disposition","outcome":"skipped"}],"affectedProducts":[{"vendor":"apache","product":"openmeetings","isKnown":false,"cpe":"cpe:2.3:a:apache:openmeetings:*:*:*:*:*:*:*:*"}],"affectedPackages":[{"name":"org.apache.openmeetings:openmeetings-install","introduced":"1.9.0","fixed":"3.1.1"}]},"assessment":{"record":{"state":"active"},"protection":{"level":"full","mechanisms":["security-rule"]},"action":{"state":"available","type":"security-rule"},"review":{"state":"automated","basis":"inferred"}},"exploits":[{"source":"exploit-db","url":"https://www.exploit-db.com/exploits/39642","title":"Apache OpenMeetings 1.9.x \u003c 3.1.0 - '.ZIP' File Directory Traversal","date":"2016-03-31"}],"signals":{"hasPOC":true,"pocCount":1,"pocSources":["exploit-db"],"firstPOCDate":"2016-03-31"},"kev":{"inKEV":false},"epss":{"available":true,"score":0.56314,"percentile":0.98994},"ssvc":{"available":false}}