CVE Database
/

CVE-2007-0264

Back to search

CVE-2007-0264

Published: Jan 16, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

Buffer overflow in Winzip32.exe in WinZip 9.0 allows local users to cause a denial of service (application crash) and possibly execute arbitrary code via a long command line argument. NOTE: this issue may cross privilege boundaries if an application automatically invokes Winzip32.exe for untrusted input filenames, as in the case of a file upload application. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

VendorProductVersions

n/a

n/a

affected
n/a

References

22020
vdb-entry
x_refsource_BID
39800
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now