Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2006-2909

Stack-based buffer overflow in the info tip shell extension (zipinfo.dll) in PicoZip 4.01 allows remote attackers to execute arbitrary code via a long filename in an (1) ACE, (2) RAR, or (3) ZIP archive, which is triggered when the user moves the mouse over the archive.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.262
EPSS Ranking 96.1%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2006-2909


Contact Us

Shodan ® - All rights reserved