Vulnerabilities
Vulnerable Software
Winzip:  >> Winzip  Security Vulnerabilities
WinZip 8.0 uses weak random number generation for password protected ZIP files, which allows local users to brute force the encryption keys and extract the data from the zip file by guessing the state of the stream coder.
CVSS Score
4.6
EPSS Score
0.0
Published
2003-12-31
Buffer overflow in the ZIP capability for multiple products allows remote attackers to cause a denial of service or execute arbitrary code via ZIP files containing entries with long filenames, including (1) Microsoft Windows 98 with Plus! Pack, (2) Windows XP, (3) Windows ME, (4) Lotus Notes R4 through R6 (pre-gold), (5) Verity KeyView, and (6) Stuffit Expander before 7.0.
CVSS Score
7.5
EPSS Score
0.304
Published
2002-10-10
Buffer overflow in WinZip 8.0 allows attackers to execute arbitrary commands via a long file name that is processed by the /zipandemail command line option.
CVSS Score
4.6
EPSS Score
0.001
Published
2001-06-27


Contact Us

Shodan ® - All rights reserved