2.6

CVE-2006-0926

Multiple directory traversal vulnerabilities in Allume StuffIt Standard and Deluxe 9.0, ZipMagic Deluxe 9.0, and StuffIt Expander 9.0.0.21 Engine 9.0.0.21 allow remote attackers to create and overwrite arbitrary files via certain crafted pathnames in a (1) zip or (2) tar archive.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SmithmicroStuffit Deluxe Version9.0
SmithmicroStuffit Expander Version9.0.0.21_engine_9.0.0.21
SmithmicroStuffit Standard Version9.0
SmithmicroZipmagic Deluxe Version9.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.61% 0.727
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 2.6 4.9 2.9
AV:N/AC:H/Au:N/C:N/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/19010
Vendor Advisory
http://www.hamid.ir/security/stuffit.txt
http://www.osvdb.org/23463
http://www.securityfocus.com/archive/1/425972/100/0/threaded
http://www.securityfocus.com/bid/16806
http://www.vupen.com/english/advisories/2006/0732
https://exchange.xforce.ibmcloud.com/vulnerabilities/24886