Show filters
9 Total Results
Displaying 1-9 of 9
Sort by:
Attacker Value
Unknown
CVE-2017-2158
Disclosure Date: January 12, 2018 (last updated November 26, 2024)
Improper verification when expanding ZIP64 archives in Lhaplus versions 1.73 and earlier may lead to unintended contents to be extracted from a specially crafted ZIP64 archive.
0
Attacker Value
Unknown
CVE-2015-0907
Disclosure Date: April 15, 2015 (last updated October 05, 2023)
Buffer overflow in Lhaplus before 1.70 allows remote attackers to execute arbitrary code via a crafted archive.
0
Attacker Value
Unknown
CVE-2015-0906
Disclosure Date: April 15, 2015 (last updated October 05, 2023)
Directory traversal vulnerability in Lhaplus before 1.70 allows remote attackers to write to arbitrary files via a crafted archive.
0
Attacker Value
Unknown
CVE-2010-3158
Disclosure Date: October 19, 2010 (last updated October 04, 2023)
Untrusted search path vulnerability in Lhaplus before 1.58 allows local users to gain privileges via a Trojan horse executable file in the current working directory.
0
Attacker Value
Unknown
CVE-2010-2368
Disclosure Date: October 18, 2010 (last updated October 04, 2023)
Untrusted search path vulnerability in Lhaplus before 1.58 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
0
Attacker Value
Unknown
CVE-2008-2021
Disclosure Date: April 30, 2008 (last updated October 04, 2023)
Heap-based buffer overflow in Lhaplus before 1.57 allows remote attackers to execute arbitrary code via a long comment field in a ZOO archive.
0
Attacker Value
Unknown
CVE-2007-6175
Disclosure Date: November 30, 2007 (last updated October 04, 2023)
Buffer overflow in Lhaplus 1.55 and earlier allows remote attackers to execute arbitrary code via a crafted LZH archive, a different vector than CVE-2007-5048.
0
Attacker Value
Unknown
CVE-2007-5048
Disclosure Date: September 24, 2007 (last updated October 04, 2023)
Heap-based buffer overflow in Lhaplus before 1.55 allows remote attackers to execute arbitrary code via a long filename in an ARJ archive.
0
Attacker Value
Unknown
CVE-2006-4033
Disclosure Date: August 09, 2006 (last updated October 04, 2023)
Heap-based buffer overflow in Lhaplus.exe in Lhaplus 1.52, and possibly earlier versions, allows remote attackers to execute arbitrary code via an LZH archive with a long header, as specified by the extendedHeaderSize.
0