Zdir Pro Path Traversal Vulnerability in ZIP Extraction API Allowing Arbitrary File Overwrite and Potential Remote Code Execution

Vulnerability

A path traversal vulnerability, known as a Zip-Slip vulnerability, has been identified in the ZIP extraction API of Zdir Pro version 4.x. When a crafted ZIP archive is processed by the backend extraction API, files can be written outside the intended directory. This flaw leads to arbitrary file overwrites and could potentially allow for remote code execution.

Impact

Exploitation of this vulnerability can result in arbitrary file overwrites and potentially allow for remote code execution on the server where Zdir Pro is running.

Reproduction

To reproduce this vulnerability, upload a crafted ZIP file containing path traversal characters to the Zdir Pro application. After uploading, extract the ZIP file using the application's extraction feature. The extraction process will write files outside the intended directory, demonstrating the path traversal vulnerability. Check the '/tmp' directory within the Zdir Pro Docker container for the presence of the extracted file, such as '/tmp/evil.txt', which indicates successful exploitation.

Added: Mar 3, 2026, 8:27 PM
Updated: Mar 3, 2026, 10:12 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
4.2
remediation
0.0
relevance
3.4
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.