Show filters
9 Total Results
Displaying 1-9 of 9
Sort by:
Attacker Value
Unknown

CVE-2017-2158

Disclosure Date: January 12, 2018 (last updated November 26, 2024)
Improper verification when expanding ZIP64 archives in Lhaplus versions 1.73 and earlier may lead to unintended contents to be extracted from a specially crafted ZIP64 archive.
0
Attacker Value
Unknown

CVE-2015-0907

Disclosure Date: April 15, 2015 (last updated October 05, 2023)
Buffer overflow in Lhaplus before 1.70 allows remote attackers to execute arbitrary code via a crafted archive.
0
Attacker Value
Unknown

CVE-2015-0906

Disclosure Date: April 15, 2015 (last updated October 05, 2023)
Directory traversal vulnerability in Lhaplus before 1.70 allows remote attackers to write to arbitrary files via a crafted archive.
0
Attacker Value
Unknown

CVE-2010-3158

Disclosure Date: October 19, 2010 (last updated October 04, 2023)
Untrusted search path vulnerability in Lhaplus before 1.58 allows local users to gain privileges via a Trojan horse executable file in the current working directory.
0
Attacker Value
Unknown

CVE-2010-2368

Disclosure Date: October 18, 2010 (last updated October 04, 2023)
Untrusted search path vulnerability in Lhaplus before 1.58 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
0
Attacker Value
Unknown

CVE-2008-2021

Disclosure Date: April 30, 2008 (last updated October 04, 2023)
Heap-based buffer overflow in Lhaplus before 1.57 allows remote attackers to execute arbitrary code via a long comment field in a ZOO archive.
0
Attacker Value
Unknown

CVE-2007-6175

Disclosure Date: November 30, 2007 (last updated October 04, 2023)
Buffer overflow in Lhaplus 1.55 and earlier allows remote attackers to execute arbitrary code via a crafted LZH archive, a different vector than CVE-2007-5048.
0
Attacker Value
Unknown

CVE-2007-5048

Disclosure Date: September 24, 2007 (last updated October 04, 2023)
Heap-based buffer overflow in Lhaplus before 1.55 allows remote attackers to execute arbitrary code via a long filename in an ARJ archive.
0
Attacker Value
Unknown

CVE-2006-4033

Disclosure Date: August 09, 2006 (last updated October 04, 2023)
Heap-based buffer overflow in Lhaplus.exe in Lhaplus 1.52, and possibly earlier versions, allows remote attackers to execute arbitrary code via an LZH archive with a long header, as specified by the extendedHeaderSize.
0