Skip to content
Noroxi

ESTsoft records

17 published records for vendor estsoft.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

17 records
  • Directory traversal vulnerability in the FTP client in ALTools ESTsoft ALFTP 4.1 beta 2 and 5.0 allows remote FTP servers to create or overw

    CriticalCVSS 9.3Proof of conceptEPSS 11%

    estsoft · alftpJun 13, 2008

  • CVE-2011-1336
    39Monitor

    Buffer overflow in ALZip 8.21 and earlier allows remote attackers to execute arbitrary code via a crafted mim file.

    CriticalCVSS 9.3No exploitEPSS 6%

    estsoft · alzipJul 7, 2011

  • CVE-2012-0315
    38Monitor

    Untrusted search path vulnerability in ALFTP before 5.31 allows local users to gain privileges via a Trojan horse executable file in a direc

    CriticalCVSS 9.3No exploitEPSS 2%

    estsoft · alftpFeb 22, 2012

  • Stack-based buffer overflow in ESTsoft ALZip 8.51 and earlier allows remote attackers to execute arbitrary code via a crafted MS-DOS device

    HighCVSS 7.8No exploitEPSS 3%

    estsoft · alzipAug 19, 2017

  • Alzip 10.83 and earlier version contains a stack-based buffer overflow vulnerability, caused by improper bounds checking during the parsing

    HighCVSS 7.8No exploitEPSS 2%

    estsoft · alzipAug 13, 2019

  • CVE-2018-5196
    31Monitor

    Alzip Stack Overflow Vulnerability

    HighCVSS 7.8No exploitEPSS 1%

    estsoft · alzipDec 21, 2018

  • A memory corruption vulnerability exists in the .PSD parsing functionality of ALSee v5.3 ~ v8.39.

    HighCVSS 7.8No exploitEPSS 1%

    estsoft · alseeAug 30, 2019

  • An integer overflow vulnerability exists in the way ESTsoft Alyac 2.5.8.544 parses OLE files.

    HighCVSS 7.8No exploitEPSS 0%

    estsoft · alyacAug 5, 2022

  • An integer overflow vulnerability exists in the way ESTsoft Alyac 2.5.8.544 parses OLE files.

    HighCVSS 7.8No exploitEPSS 0%

    estsoft · alyacAug 5, 2022

  • ESTsoft ALZip before 10.76 allows local users to execute arbitrary code via creating a malicious .DLL file and installing it in a specific d

    HighCVSS 7.8No exploitEPSS 0%

    estsoft · alzipMay 17, 2018

  • ALTOOLS update service 18.1 and earlier versions contains a local privilege escalation vulnerability due to insecure permission.

    HighCVSS 7.8No exploitEPSS 0%

    estsoft · altoolsAug 13, 2019

  • CVE-2006-2899
    27Monitor

    Unspecified vulnerability in ESTsoft InternetDISK versions before 2006/04/20 allows remote authenticated users to execute arbitrary code, po

    MediumCVSS 6.5Proof of conceptEPSS 4%

    estsoft · internetdiskJun 7, 2006

  • CVE-2010-5211
    27Monitor

    Untrusted search path vulnerability in ALSee 6.20.0.1 allows local users to gain privileges via a Trojan horse patchani.dll file in the curr

    MediumCVSS 6.9No exploitEPSS 0%

    estsoft · alseeSep 6, 2012

  • An out of bounds read vulnerability exists in the malware scan functionality of ESTsoft Alyac 2.5.7.7.

    MediumCVSS 5.5No exploitEPSS 1%

    estsoft · alyacMay 12, 2022

  • A denial of service vulnerability exists in the malware scan functionality of ESTsoft Alyac 2.5.8.645.

    MediumCVSS 5.5No exploitEPSS 0%

    estsoft · alyacFeb 2, 2023

  • CVE-2005-3194
    21Monitor

    Multiple buffer overflows in ALZip 6.12 (Korean), 6.1 (International), and 5.52 (English) allow remote attackers to execute arbitrary code v

    MediumCVSS 5.1No exploitEPSS 3%

    estsoft · alzipOct 14, 2005

  • CVE-2014-8494
    18Monitor

    ESTsoft ALUpdate 8.5.1.0.0 uses weak permissions (Users: Full Control) for the (1) AlUpdate folder and (2) AlUpdate.exe, which allows local

    MediumCVSS 4.6No exploitEPSS 0%

    estsoft · alupdateNov 3, 2014