winace records
7 published records for vendor winace.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 4
- With a fix record
- 14.3%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
- CWE-189 Numeric Errors1
- CWE-399 Resource Management Errors1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
42Plan | CVE-2007-6563No exploit | Heap-based buffer overflow in WinAce 2.65 and earlier, and possibly other versions before 2.69, allows user-assisted remote attackers to exewinace · winace · CWE-119 | Critical10.0 | — | 5.5% | Dec 27, 2007 |
35Monitor | CVE-2005-2856Proof of concept | Stack-based buffer overflow in the WinACE UNACEV2.DLL third-party compression utility before 2.6.0.0, as used in multiple products includingwinace · winace · CWE-119 | High7.5 | — | 15.7% | Sep 8, 2005 |
32Monitor | CVE-2007-1673No exploit | unzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite looamavis · amavis · CWE-399 | High7.8 | — | 3.2% | May 8, 2007 |
32Monitor | CVE-2007-2535No exploit | WinAce allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure that points to a prewinace · winace | High7.8 | — | 2.7% | May 8, 2007 |
31Monitor | CVE-2005-2694Proof of concept | Buffer overflow in WinAce 2.6.0.5, and possibly earlier versions, allows remote attackers to execute arbitrary code via a temporary (.tmp) fwinace · winace | High7.5 | — | 3.9% | Aug 26, 2005 |
21Monitor | CVE-2006-0813No exploit | Heap-based buffer overflow in WinACE 2.60 allows user-assisted attackers to execute arbitrary code via a large header block in an ARJ archivwinace · winace · CWE-119 | Medium5.1 | — | 3.2% | Feb 24, 2006 |
18Monitor | CVE-2015-2063No exploit | Integer overflow in unace 1.2b allows remote attackers to cause a denial of service (crash) via a small file header in an ace archive, whichwinace · unace · CWE-189 | Medium4.3 | — | 2.9% | Mar 9, 2015 |
- CVE-2007-656342Plan
Heap-based buffer overflow in WinAce 2.65 and earlier, and possibly other versions before 2.69, allows user-assisted remote attackers to exe
CriticalCVSS 10.0No exploitEPSS 6%winace · winaceDec 27, 2007
- CVE-2005-285635Monitor
Stack-based buffer overflow in the WinACE UNACEV2.DLL third-party compression utility before 2.6.0.0, as used in multiple products including
HighCVSS 7.5Proof of conceptEPSS 16%winace · winaceSep 8, 2005
- CVE-2007-167332Monitor
unzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite loo
HighCVSS 7.8No exploitEPSS 3%amavis · amavisMay 8, 2007
- CVE-2007-253532Monitor
WinAce allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure that points to a pre
HighCVSS 7.8No exploitEPSS 3%winace · winaceMay 8, 2007
- CVE-2005-269431Monitor
Buffer overflow in WinAce 2.6.0.5, and possibly earlier versions, allows remote attackers to execute arbitrary code via a temporary (.tmp) f
HighCVSS 7.5Proof of conceptEPSS 4%winace · winaceAug 26, 2005
- CVE-2006-081321Monitor
Heap-based buffer overflow in WinACE 2.60 allows user-assisted attackers to execute arbitrary code via a large header block in an ARJ archiv
MediumCVSS 5.1No exploitEPSS 3%winace · winaceFeb 24, 2006
- CVE-2015-206318Monitor
Integer overflow in unace 1.2b allows remote attackers to cause a denial of service (crash) via a small file header in an ace archive, which
MediumCVSS 4.3No exploitEPSS 3%winace · unaceMar 9, 2015