[Forgot Password]
Login  Register Subscribe

23631

 
 

115038

 
 

96174

 
 

909

 
 

78077

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2010-1597

Date: (C)2010-04-29   (M)2017-08-18
 
CVSS Score: 9.3Access Vector: NETWORK
Exploitability Subscore: 8.6Access Complexity: MEDIUM
Impact Subscore: 10.0Authentication: NONE
 Confidentiality: COMPLETE
 Integrity: COMPLETE
 Availability: COMPLETE











Stack-based buffer overflow in zgtips.dll in ZipGenius 6.3.1.2552 allows user-assisted remote attackers to execute arbitrary code via a ZIP file containing an entry with a long filename.

Reference:
EXPLOIT-DB-12326
SECUNIA-39497
BID-39622
OSVDB-63971
ADV-2010-0966
http://feeds.feedburner.com/zipgeniusnews
http://www.corelan.be:8800/advisories.php?id=CORELAN-10-029
http://www.corelan.be:8800/index.php/forum/security-advisories/corelan-10-029-zipgenius-v6-3-1-2552-zgtips-dll-stack-buffer-overflow/
zipgenius-zgtips-bo(58022)

CWE    1
CWE-119

© 2013 SecPod Technologies