Vulnerability Name: | CVE-2006-3890 (CCN-30315) | ||||||||
Assigned: | 2006-11-14 | ||||||||
Published: | 2006-11-14 | ||||||||
Updated: | 2018-10-17 | ||||||||
Summary: | Stack-based buffer overflow in the Sky Software FileView ActiveX control, as used in WinZip 10 before build 7245 and in certain other applications, allows remote attackers to execute arbitrary code via a long FilePattern attribute in a WZFILEVIEW object, a different vulnerability than CVE-2006-5198. This vulnerability is addressed in the following product update: WinZip, WinZip, 10.0 build 7245 | ||||||||
CVSS v3 Severity: | 5.6 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 9.3 High (CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C) 7.7 High (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:F/RL:OF/RC:C)
4.2 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P/E:F/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2006-3890 Source: CCN Type: SA22891 WinZip FileView ActiveX Control Multiple Vulnerabilities Source: SECUNIA Type: Exploit, Patch, Vendor Advisory 22891 Source: CCN Type: US-CERT VU#225217 Sky Software FileView ActiveX control buffer overflow vulnerability Source: CERT-VN Type: Patch, US Government Resource VU#225217 Source: BUGTRAQ Type: UNKNOWN 20061114 Re: [Full-disclosure] ZDI-06-040: WinZip FileView ActiveX Control Unsafe Method Exposure Vulnerability Source: BID Type: Exploit, Patch 21060 Source: CCN Type: BID-21060 WinZip WZFileView.FileViewCtrl.61 ActiveX Control Multiple Remote Code Execution Vulnerabilities Source: BID Type: UNKNOWN 21108 Source: CCN Type: BID-21108 Sky Software FileView ActiveX Control Remote Code Execution Vulnerability Source: CCN Type: Sky Software Web site FileView Control Source: MS Type: UNKNOWN MS06-067 Source: XF Type: UNKNOWN fileview-winzip-activex-bo(30315) Source: EXPLOIT-DB Type: UNKNOWN 2785 | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |