Перейти к содержимому
Noroxi

Записи WinZip

14 опубликованных записей вендора winzip.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
1 · 7,1 %
Pre-auth RCE
8
С записью об исправлении
21,4 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 24
  2. 25

Столбик: всего · тёмная часть: CISA KEV.

Повторяющиеся классы

Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

CWE

Все записи

14 записей
  • CVE-2004-0333
    47В плане

    Buffer overflow in the UUDeview package, as used in WinZip 6.2 through WinZip 8.1 SR-1, and possibly other packages, allows remote attackers

    КритическаяCVSS 10,0Proof of conceptEPSS 24 %

    uudeview · uudeview23 нояб. 2004 г.

  • CVE-2002-0370
    43В плане

    Buffer overflow in the ZIP capability for multiple products allows remote attackers to cause a denial of service or execute arbitrary code v

    ВысокаяCVSS 7,5Эксплойта нетEPSS 43 %

    allume systems division · stuffit expander10 окт. 2002 г.

  • CVE-2004-0234
    43В плане

    Multiple stack-based buffer overflows in the get_header function in header.c for LHA 1.14, as used in products such as Barracuda Spam Firewa

    КритическаяCVSS 10,0Эксплойта нетEPSS 10 %

    clearswift · mailsweeper18 авг. 2004 г.

  • CVE-2006-3890
    41В плане

    Stack-based buffer overflow in the Sky Software FileView ActiveX control, as used in WinZip 10 before build 7245 and in certain other applic

    КритическаяCVSS 9,3Proof of conceptEPSS 15 %

    sky software · fileview activex control21 нояб. 2006 г.

  • CVE-2025-1240
    38Наблюдать

    WinZip 7Z File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

    ВысокаяCVSS 8,8Эксплойта нетEPSS 10 %

    winzip · winzip11 февр. 2025 г.

  • CVE-2006-6884
    38Наблюдать

    Buffer overflow in the WZFILEVIEW.FileViewCtrl.61 ActiveX control (aka Sky Software "FileView" ActiveX control) for WinZip 10.0 Build 6667 a

    КритическаяCVSS 9,3Proof of conceptEPSS 5 %

    winzip · winzip31 дек. 2006 г.

  • CVE-2006-5198
    34Наблюдать

    The WZFILEVIEW.FileViewCtrl.61 ActiveX control (aka Sky Software "FileView" ActiveX control) for WinZip 10.0 before build 7245 allows remote

    СредняяCVSS 4,0Готовый эксплойтEPSS 60 %

    winzip · winzip14 нояб. 2006 г.

  • CVE-2008-3442
    31Наблюдать

    WinZip before 11.0 does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute arbitrary code

    ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %

    winzip · winzip1 авг. 2008 г.

  • CVE-2024-8811
    31Наблюдать

    WinZip Mark-of-the-Web Bypass Vulnerability

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    winzip · winzip22 нояб. 2024 г.

  • CVE-2004-0235
    26Наблюдать

    Multiple directory traversal vulnerabilities in LHA 1.14 allow remote attackers or local users to create arbitrary files via an LHA archive

    СредняяCVSS 6,4Эксплойта нетEPSS 4 %

    clearswift · mailsweeper18 авг. 2004 г.

  • CVE-2007-0264
    26Наблюдать

    Buffer overflow in Winzip32.exe in WinZip 9.0 allows local users to cause a denial of service (application crash) and possibly execute arbit

    СредняяCVSS 6,6Proof of conceptEPSS 1 %

    winzip · winzip16 янв. 2007 г.

  • CVE-2001-0449
    18Наблюдать

    Buffer overflow in WinZip 8.0 allows attackers to execute arbitrary commands via a long file name that is processed by the /zipandemail comm

    СредняяCVSS 4,6Эксплойта нетEPSS 0 %

    winzip · winzip27 июн. 2001 г.

  • CVE-2003-1376
    18Наблюдать

    WinZip 8.0 uses weak random number generation for password protected ZIP files, which allows local users to brute force the encryption keys

    СредняяCVSS 4,6Эксплойта нетEPSS 0 %

    winzip · winzip31 дек. 2003 г.

  • CVE-2004-1465
    14Наблюдать

    Multiple buffer overflows in WinZip 9.0 and earlier may allow attackers to execute arbitrary code via multiple vectors, including the comman

    НизкаяCVSS 3,7Proof of conceptEPSS 1 %

    winzip · winzip31 дек. 2004 г.