Перейти к содержимому
Noroxi

Записи 7-Zip

37 опубликованных записей вендора 7-zip.

Профиль для исследователя

Попали в KEV
1 · 2,7 %
С эксплойтом
1 · 2,7 %
Pre-auth RCE
3
С записью об исправлении
86,5 %
Медиана: публикация → KEV
12 дн.

Все записи

37 записей
  • CVE-2025-0411
    78На этой неделе

    7-Zip Mark-of-the-Web Bypass Vulnerability

    ВысокаяCVSS 7,0KEVГотовый эксплойтEPSS 67 %

    7-zip · 7-zip25 янв. 2025 г.

  • CVE-2023-31102
    48В плане

    Ppmd7.c in 7-Zip before 23.00 allows an integer underflow and invalid read operation via a crafted 7Z archive.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 57 %

    7-zip · 7-zip3 нояб. 2023 г.

  • CVE-2008-6536
    41В плане

    Unspecified vulnerability in 7-zip before 4.5.7 has unknown impact and remote attack vectors, as demonstrated by the PROTOS GENOME test suit

    КритическаяCVSS 10,0Эксплойта нетEPSS 3 %

    7-zip · 7-zip29 мар. 2009 г.

  • CVE-2025-11001
    39Наблюдать

    7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability

    ВысокаяCVSS 7,8Proof of conceptEPSS 27 %

    7-zip · 7-zip19 нояб. 2025 г.

  • CVE-2024-11477
    38Наблюдать

    7-Zip Zstandard Decompression Integer Underflow Remote Code Execution Vulnerability

    ВысокаяCVSS 7,8Proof of conceptEPSS 23 %

    7-zip · 7-zip22 нояб. 2024 г.

  • CVE-2016-2335
    38Наблюдать

    The CInArchive::ReadFileItem method in Archive/Udf/UdfIn.cpp in 7zip 9.20 and 15.05 beta and p7zip allows remote attackers to cause a denial

    ВысокаяCVSS 8,8Эксплойта нетEPSS 10 %

    opensuse · opensuse7 июн. 2016 г.

  • CVE-2016-2334
    35Наблюдать

    Heap-based buffer overflow in the NArchive::NHfs::CHandler::ExtractZlibFile method in 7zip before 16.00 and p7zip allows remote attackers to

    ВысокаяCVSS 7,8Proof of conceptEPSS 15 %

    7-zip · 7-zip13 дек. 2016 г.

  • CVE-2023-40481
    35Наблюдать

    7-Zip SquashFS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

    ВысокаяCVSS 7,8Эксплойта нетEPSS 14 %

    7-zip · 7-zip2 мая 2024 г.

  • CVE-2026-48095
    35Наблюдать

    GHSL-2026-140_7-Zip: 7-Zip has a heap buffer overflow via NTFS compressed stream buffer under-allocation

    ВысокаяCVSS 8,8Proof of conceptEPSS 1 %

    7-zip · 7-zip5 июн. 2026 г.

  • CVE-2018-10172
    35Наблюдать

    7-Zip through 18.01 on Windows implements the "Large memory pages" option by calling the LsaAddAccountRights function to add the SeLockMemor

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    7-zip · 7-zip16 апр. 2018 г.

  • CVE-2023-52168
    33Наблюдать

    The NtfsHandler.cpp NTFS handler in 7-Zip before 24.01 (for 7zz) contains a heap-based buffer overflow that allows an attacker to overwrite

    ВысокаяCVSS 8,4Эксплойта нетEPSS 0 %

    3 июл. 2024 г.

  • CVE-2016-9296
    32Наблюдать

    A null pointer dereference bug affects the 16.02 and many old versions of p7zip.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 7 %

    7-zip · p7zip11 нояб. 2016 г.

  • CVE-2017-17969
    32Наблюдать

    Heap-based buffer overflow in the NCompress::NShrink::CDecoder::CodeReal method in 7-Zip before 18.00 and p7zip allows remote attackers to c

    ВысокаяCVSS 7,8Эксплойта нетEPSS 5 %

    7-zip · 7-zip30 янв. 2018 г.

  • CVE-2018-10115
    32Наблюдать

    Incorrect initialization logic of RAR decoder objects in 7-Zip 18.03 and before can lead to usage of uninitialized memory, allowing remote a

    ВысокаяCVSS 7,8Эксплойта нетEPSS 5 %

    7-zip · 7-zip2 мая 2018 г.

  • CVE-2018-5996
    32Наблюдать

    Insufficient exception handling in the method NCompress::NRar3::CDecoder::Code of 7-Zip before 18.00 and p7zip can lead to multiple memory c

    ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %

    7-zip · 7-zip31 янв. 2018 г.

  • CVE-2016-7804
    32Наблюдать

    Untrusted search path vulnerability in 7 Zip for Windows 16.02 and earlier allows remote attackers to gain privileges via a Trojan horse DLL

    ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %

    7-zip · 7-zip22 мая 2017 г.

  • CVE-2023-52169
    32Наблюдать

    The NtfsHandler.cpp NTFS handler in 7-Zip before 24.01 (for 7zz) contains an out-of-bounds read that allows an attacker to read beyond the i

    ВысокаяCVSS 8,2Эксплойта нетEPSS 1 %

    3 июл. 2024 г.

  • CVE-2026-48092
    32Наблюдать

    7-Zip SquashFS Fragment Offset Overflow (GHSL-2026-116)

    ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %

    7-zip · 7-zip5 июн. 2026 г.

  • CVE-2022-29072
    31Наблюдать

    7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the Help>C

    ВысокаяCVSS 7,8Proof of conceptEPSS 2 %

    7-zip · 7-zip15 апр. 2022 г.

  • CVE-2026-14266
    31Наблюдать

    7-Zip XZ Decompression Heap-based Buffer Overflow Remote Code Execution Vulnerability

    ВысокаяCVSS 7,8Proof of conceptEPSS 1 %

    7-zip · 7-zip29 июл. 2026 г.

  • CVE-2025-11002
    31Наблюдать

    7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability

    ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %

    7-zip · 7-zip23 янв. 2026 г.

  • CVE-2022-47069
    31Наблюдать

    p7zip 16.02 was discovered to contain a heap-buffer-overflow vulnerability via the function NArchive::NZip::CInArchive::FindCd(bool) at CPP/

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    7-zip · p7zip22 авг. 2023 г.

  • CVE-2007-4725
    29Наблюдать

    Stack consumption vulnerability in AkkyWareHOUSE 7-zip32.dll before 4.42.00.04, as derived from Igor Pavlov 7-Zip before 4.53 beta, allows u

    СредняяCVSS 6,8Proof of conceptEPSS 6 %

    7-zip · 7-zip5 сент. 2007 г.

  • CVE-2026-48111
    28Наблюдать

    GHSL-2026-121 7-Zip UEFI DEPEX OOB Read

    ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %

    7-zip · 7-zip5 июн. 2026 г.

  • CVE-2026-48103
    28Наблюдать

    GHSL-2026-119 7-Zip WIM SecurityId OOB read

    ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %

    7-zip · 7-zip5 июн. 2026 г.