Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-4554

Опубликовано: 06 сент. 2006
Источник: nvd
CVSS2: 5.1
EPSS Низкий

Описание

Stack-based buffer overflow in the ReadFile function in the ZOO-processing exports in the BeCubed Compression Plus before 5.0.1.28, as used in products including (1) Tumbleweed EMF, (2) VCOM/Ontrack PowerDesk Pro, (3) Canyon Drag and Zip, (4) Canyon Power File, and (5) Canyon Power File Gold, allow context-dependent attackers to execute arbitrary code via an inconsistent size parameter in a ZOO file header.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:becubed:compression_plus:*:*:*:*:*:*:*:*
Версия до 5.0 (включая)

EPSS

Процентиль: 87%
0.03206
Низкий

5.1 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

Stack-based buffer overflow in the ReadFile function in the ZOO-processing exports in the BeCubed Compression Plus before 5.0.1.28, as used in products including (1) Tumbleweed EMF, (2) VCOM/Ontrack PowerDesk Pro, (3) Canyon Drag and Zip, (4) Canyon Power File, and (5) Canyon Power File Gold, allow context-dependent attackers to execute arbitrary code via an inconsistent size parameter in a ZOO file header.

EPSS

Процентиль: 87%
0.03206
Низкий

5.1 Medium

CVSS2

Дефекты

NVD-CWE-Other