Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
WinZip10.0 FileView ActiveX Controls CreateNewFolderFromName Method Buffer overflow Dec 31 2006 05:24AM
76693223 163 com
The first flaw is due to errors in the "WZFILEVIEW.FileViewCtrl.61" ActiveX control that does not validate input passed to CreateNewFolderFromName methods,When you pass a long string(length>235),It will bead to buffer overflow .which could be exploited by remote attackers to execute arbitrary comman...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus