7.5

CVE-2002-0370

Buffer overflow in the ZIP capability for multiple products allows remote attackers to cause a denial of service or execute arbitrary code via ZIP files containing entries with long filenames, including (1) Microsoft Windows 98 with Plus! Pack, (2) Windows XP, (3) Windows ME, (4) Lotus Notes R4 through R6 (pre-gold), (5) Verity KeyView, and (6) Stuffit Expander before 7.0.

Data is provided by the National Vulnerability Database (NVD)
IbmLotus Notes Version <= 4.5
IbmLotus Notes Version5.0
IbmLotus Notes Version5.0.1
IbmLotus Notes Version5.0.2
IbmLotus Notes Version5.0.3
IbmLotus Notes Version5.0.4
IbmLotus Notes Version5.0.5
IbmLotus Notes Version5.0.9a
IbmLotus Notes Version5.0.10
IbmLotus Notes Version5.0.11
IbmLotus Notes Versionr5
IbmLotus Notes Versionr6
VerityKeyview Viewing Sdk Versiongold
WinzipWinzip Version7.0
MicrosoftWindows Xp Editionhome
MicrosoftWindows Xp Updategold Editionprofessional
MicrosoftWindows Xp Updatesp1 Editionhome
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 32.27% 0.967
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P