Show filters
15 Total Results
Displaying 11-15 of 15
Sort by:
Attacker Value
Unknown

CVE-2005-0602

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Unzip 5.51 and earlier does not properly warn the user when extracting setuid or setgid files, which may allow local users to gain privileges.
0
Attacker Value
Unknown

CVE-2004-1010

Disclosure Date: March 01, 2005 (last updated February 22, 2025)
Buffer overflow in Info-Zip 2.3 and possibly earlier versions, when using recursive folder compression, allows remote attackers to execute arbitrary code via a ZIP file containing a long pathname.
0
Attacker Value
Unknown

CVE-2003-0282

Disclosure Date: June 16, 2003 (last updated February 22, 2025)
Directory traversal vulnerability in UnZip 5.50 allows attackers to overwrite arbitrary files via invalid characters between two . (dot) characters, which are filtered and result in a ".." sequence.
0
Attacker Value
Unknown

CVE-2001-1269

Disclosure Date: July 12, 2001 (last updated February 22, 2025)
Info-ZIP UnZip 5.42 and earlier allows attackers to overwrite arbitrary files during archive extraction via filenames in the archive that begin with the '/' (slash) character.
0
Attacker Value
Unknown

CVE-2001-1268

Disclosure Date: July 12, 2001 (last updated February 22, 2025)
Directory traversal vulnerability in Info-ZIP UnZip 5.42 and earlier allows attackers to overwrite arbitrary files during archive extraction via a .. (dot dot) in an extracted filename.
0