Vulnerabilities
Vulnerable Software
Estsoft:  >> Alzip  >> 8.5.1  Security Vulnerabilities
Alzip 10.83 and earlier version contains a stack-based buffer overflow vulnerability, caused by improper bounds checking during the parsing of crafted ISO archive file format. By persuading a victim to open a specially-crafted ISO archive file, an attacker could execution arbitrary code.
CVSS Score
7.8
EPSS Score
0.009
Published
2019-08-13
Alzip 10.76.0.0 and earlier is vulnerable to a stack overflow caused by improper bounds checking. By persuading a victim to open a specially-crafted LZH archive file, a attacker could execute arbitrary code execution.
CVSS Score
8.8
EPSS Score
0.005
Published
2018-12-21
ESTsoft ALZip before 10.76 allows local users to execute arbitrary code via creating a malicious .DLL file and installing it in a specific directory: %PROGRAMFILES%\ESTsoft\ALZip\Formats, %PROGRAMFILES%\ESTsoft\ALZip\Coders, %PROGRAMFILES(X86)%\ESTsoft\ALZip\Formats, or %PROGRAMFILES(X86)%\ESTsoft\ALZip\Coders.
CVSS Score
7.8
EPSS Score
0.001
Published
2018-05-17
Stack-based buffer overflow in ESTsoft ALZip 8.51 and earlier allows remote attackers to execute arbitrary code via a crafted MS-DOS device file, as demonstrated by use of "AUX" as the initial substring of a filename.
CVSS Score
7.8
EPSS Score
0.042
Published
2017-08-19
Buffer overflow in ALZip 8.21 and earlier allows remote attackers to execute arbitrary code via a crafted mim file.
CVSS Score
9.3
EPSS Score
0.079
Published
2011-07-07


Contact Us

Shodan ® - All rights reserved