[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2008-6536Date: (C)2009-03-29   (M)2023-12-22


Unspecified vulnerability in 7-zip before 4.5.7 has unknown impact and remote attack vectors, as demonstrated by the PROTOS GENOME test suite for Archive Formats (c10).

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 10.0
Exploit Score: 10.0
Impact Score: 10.0
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: COMPLETE
Integrity: COMPLETE
Availability: COMPLETE
  
Reference:
BID-28285
SECUNIA-29434
OSVDB-43649
7zip-archives-code-execution(41247)
ADV-2008-0914
http://www.cert.fi/haavoittuvuudet/joint-advisory-archive-formats.html
http://www.ee.oulu.fi/research/ouspg/protos/testing/c10/archive/
http://www.xerox.com/download/security/security-bulletin/16287-4d6b7b0c81f7b/cert_XRX13-003_v1.0.pdf

CPE    36
cpe:/a:7-zip:7-zip:4.26:beta
cpe:/a:7-zip:7-zip:4.34:beta
cpe:/a:7-zip:7-zip:4.51:beta
cpe:/a:7-zip:7-zip:4.20
...
OVAL    3
oval:org.secpod.oval:def:43306
oval:org.secpod.oval:def:1000420
oval:org.secpod.oval:def:1000335

© SecPod Technologies