İçeriğe atla
Noroxi

7-Zip kayıtları

7-zip üreticisine ait 37 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
1 · %2,7
Silahlaştırılmış
1 · %2,7
Pre-auth RCE
3
Düzeltme kaydı olan
%86,5
Yayından KEV’e ortanca
12 gün

Tüm kayıtlar

37 kayıt
  • CVE-2025-0411
    78Bu hafta

    7-Zip Mark-of-the-Web Bypass Vulnerability

    YüksekCVSS 7,0KEVSilahlaştırılmışEPSS %67

    7-zip · 7-zip25 Oca 2025

  • CVE-2023-31102
    48Planlayın

    Ppmd7.c in 7-Zip before 23.00 allows an integer underflow and invalid read operation via a crafted 7Z archive.

    YüksekCVSS 7,8İstismar yokEPSS %57

    7-zip · 7-zip3 Kas 2023

  • CVE-2008-6536
    41Planlayın

    Unspecified vulnerability in 7-zip before 4.5.7 has unknown impact and remote attack vectors, as demonstrated by the PROTOS GENOME test suit

    KritikCVSS 10,0İstismar yokEPSS %3

    7-zip · 7-zip29 Mar 2009

  • CVE-2025-11001
    39İzleyin

    7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability

    YüksekCVSS 7,8Kavram kanıtıEPSS %27

    7-zip · 7-zip19 Kas 2025

  • CVE-2024-11477
    38İzleyin

    7-Zip Zstandard Decompression Integer Underflow Remote Code Execution Vulnerability

    YüksekCVSS 7,8Kavram kanıtıEPSS %23

    7-zip · 7-zip22 Kas 2024

  • CVE-2016-2335
    38İzleyin

    The CInArchive::ReadFileItem method in Archive/Udf/UdfIn.cpp in 7zip 9.20 and 15.05 beta and p7zip allows remote attackers to cause a denial

    YüksekCVSS 8,8İstismar yokEPSS %10

    opensuse · opensuse7 Haz 2016

  • CVE-2016-2334
    35İzleyin

    Heap-based buffer overflow in the NArchive::NHfs::CHandler::ExtractZlibFile method in 7zip before 16.00 and p7zip allows remote attackers to

    YüksekCVSS 7,8Kavram kanıtıEPSS %15

    7-zip · 7-zip13 Ara 2016

  • CVE-2023-40481
    35İzleyin

    7-Zip SquashFS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

    YüksekCVSS 7,8İstismar yokEPSS %14

    7-zip · 7-zip2 May 2024

  • CVE-2026-48095
    35İzleyin

    GHSL-2026-140_7-Zip: 7-Zip has a heap buffer overflow via NTFS compressed stream buffer under-allocation

    YüksekCVSS 8,8Kavram kanıtıEPSS %1

    7-zip · 7-zip5 Haz 2026

  • CVE-2018-10172
    35İzleyin

    7-Zip through 18.01 on Windows implements the "Large memory pages" option by calling the LsaAddAccountRights function to add the SeLockMemor

    YüksekCVSS 8,8İstismar yokEPSS %0

    7-zip · 7-zip16 Nis 2018

  • CVE-2023-52168
    33İzleyin

    The NtfsHandler.cpp NTFS handler in 7-Zip before 24.01 (for 7zz) contains a heap-based buffer overflow that allows an attacker to overwrite

    YüksekCVSS 8,4İstismar yokEPSS %0

    3 Tem 2024

  • CVE-2016-9296
    32İzleyin

    A null pointer dereference bug affects the 16.02 and many old versions of p7zip.

    YüksekCVSS 7,5İstismar yokEPSS %7

    7-zip · p7zip11 Kas 2016

  • CVE-2017-17969
    32İzleyin

    Heap-based buffer overflow in the NCompress::NShrink::CDecoder::CodeReal method in 7-Zip before 18.00 and p7zip allows remote attackers to c

    YüksekCVSS 7,8İstismar yokEPSS %5

    7-zip · 7-zip30 Oca 2018

  • CVE-2018-10115
    32İzleyin

    Incorrect initialization logic of RAR decoder objects in 7-Zip 18.03 and before can lead to usage of uninitialized memory, allowing remote a

    YüksekCVSS 7,8İstismar yokEPSS %5

    7-zip · 7-zip2 May 2018

  • CVE-2018-5996
    32İzleyin

    Insufficient exception handling in the method NCompress::NRar3::CDecoder::Code of 7-Zip before 18.00 and p7zip can lead to multiple memory c

    YüksekCVSS 7,8İstismar yokEPSS %3

    7-zip · 7-zip31 Oca 2018

  • CVE-2016-7804
    32İzleyin

    Untrusted search path vulnerability in 7 Zip for Windows 16.02 and earlier allows remote attackers to gain privileges via a Trojan horse DLL

    YüksekCVSS 7,8İstismar yokEPSS %2

    7-zip · 7-zip22 May 2017

  • CVE-2023-52169
    32İzleyin

    The NtfsHandler.cpp NTFS handler in 7-Zip before 24.01 (for 7zz) contains an out-of-bounds read that allows an attacker to read beyond the i

    YüksekCVSS 8,2İstismar yokEPSS %1

    3 Tem 2024

  • CVE-2026-48092
    32İzleyin

    7-Zip SquashFS Fragment Offset Overflow (GHSL-2026-116)

    YüksekCVSS 8,1İstismar yokEPSS %0

    7-zip · 7-zip5 Haz 2026

  • CVE-2022-29072
    31İzleyin

    7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the Help>C

    YüksekCVSS 7,8Kavram kanıtıEPSS %2

    7-zip · 7-zip15 Nis 2022

  • CVE-2026-14266
    31İzleyin

    7-Zip XZ Decompression Heap-based Buffer Overflow Remote Code Execution Vulnerability

    YüksekCVSS 7,8Kavram kanıtıEPSS %1

    7-zip · 7-zip29 Tem 2026

  • CVE-2025-11002
    31İzleyin

    7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability

    YüksekCVSS 7,8İstismar yokEPSS %1

    7-zip · 7-zip23 Oca 2026

  • CVE-2022-47069
    31İzleyin

    p7zip 16.02 was discovered to contain a heap-buffer-overflow vulnerability via the function NArchive::NZip::CInArchive::FindCd(bool) at CPP/

    YüksekCVSS 7,8İstismar yokEPSS %0

    7-zip · p7zip22 Ağu 2023

  • CVE-2007-4725
    29İzleyin

    Stack consumption vulnerability in AkkyWareHOUSE 7-zip32.dll before 4.42.00.04, as derived from Igor Pavlov 7-Zip before 4.53 beta, allows u

    OrtaCVSS 6,8Kavram kanıtıEPSS %6

    7-zip · 7-zip5 Eyl 2007

  • CVE-2026-48111
    28İzleyin

    GHSL-2026-121 7-Zip UEFI DEPEX OOB Read

    YüksekCVSS 7,1İstismar yokEPSS %0

    7-zip · 7-zip5 Haz 2026

  • CVE-2026-48103
    28İzleyin

    GHSL-2026-119 7-Zip WIM SecurityId OOB read

    YüksekCVSS 7,1İstismar yokEPSS %0

    7-zip · 7-zip5 Haz 2026