Directory traversal vulnerability in DivX Player 2.6 and earlier allows remote attackers to overwrite arbitrary files via a .. (dot dot) in a filename in a ZIP file for a skin.Referenceshttp://secunia.com/advisories/13969http://marc.info/?l=bugtraq&m=110642748517854&w=2https://exchange.xforce.ibmcloud.com/vulnerabilities/19030http://aluigi.altervista.org/adv/divxplayer-adv.txthttp://www.securityfocus.com/bid/12332