Логотип exploitDog
bind: "CVE-2025-11001"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2025-11001"

Количество 7

Количество 7

ubuntu логотип

CVE-2025-11001

около 2 месяцев назад

7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of 7-Zip. Interaction with this product is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of symbolic links in ZIP files. Crafted data in a ZIP file can cause the process to traverse to unintended directories. An attacker can leverage this vulnerability to execute code in the context of a service account. Was ZDI-CAN-26753.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2025-11001

около 2 месяцев назад

7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of 7-Zip. Interaction with this product is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of symbolic links in ZIP files. Crafted data in a ZIP file can cause the process to traverse to unintended directories. An attacker can leverage this vulnerability to execute code in the context of a service account. Was ZDI-CAN-26753.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2025-11001

около 2 месяцев назад

7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulne ...

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-h6cw-8q9x-9gj9

около 2 месяцев назад

7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of 7-Zip. Interaction with this product is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of symbolic links in ZIP files. Crafted data in a ZIP file can cause the process to traverse to unintended directories. An attacker can leverage this vulnerability to execute code in the context of a service account. Was ZDI-CAN-26753.

CVSS3: 7
EPSS: Низкий
fstec логотип

BDU:2025-12910

3 месяца назад

Уязвимость файлового архиватора 7-Zip, связанная с неверным определением символических ссылок перед доступом к файлу, позволяющая нарушителю выполнить произвольный код

CVSS3: 7
EPSS: Низкий
redos логотип

ROS-20251110-02

2 месяца назад

Уязвимость 7zip

CVSS2: 6.2
EPSS: Низкий
fstec логотип

BDU:2025-12912

3 месяца назад

Уязвимость файлового архиватора 7-Zip, связанная с неверным определением символических ссылок перед доступом к файлу, позволяющая нарушителю выполнить произвольный код

CVSS3: 7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-11001

7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of 7-Zip. Interaction with this product is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of symbolic links in ZIP files. Crafted data in a ZIP file can cause the process to traverse to unintended directories. An attacker can leverage this vulnerability to execute code in the context of a service account. Was ZDI-CAN-26753.

CVSS3: 7.8
0%
Низкий
около 2 месяцев назад
nvd логотип
CVE-2025-11001

7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of 7-Zip. Interaction with this product is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of symbolic links in ZIP files. Crafted data in a ZIP file can cause the process to traverse to unintended directories. An attacker can leverage this vulnerability to execute code in the context of a service account. Was ZDI-CAN-26753.

CVSS3: 7.8
0%
Низкий
около 2 месяцев назад
debian логотип
CVE-2025-11001

7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulne ...

CVSS3: 7.8
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-h6cw-8q9x-9gj9

7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of 7-Zip. Interaction with this product is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of symbolic links in ZIP files. Crafted data in a ZIP file can cause the process to traverse to unintended directories. An attacker can leverage this vulnerability to execute code in the context of a service account. Was ZDI-CAN-26753.

CVSS3: 7
0%
Низкий
около 2 месяцев назад
fstec логотип
BDU:2025-12910

Уязвимость файлового архиватора 7-Zip, связанная с неверным определением символических ссылок перед доступом к файлу, позволяющая нарушителю выполнить произвольный код

CVSS3: 7
0%
Низкий
3 месяца назад
redos логотип
ROS-20251110-02

Уязвимость 7zip

CVSS2: 6.2
0%
Низкий
2 месяца назад
fstec логотип
BDU:2025-12912

Уязвимость файлового архиватора 7-Zip, связанная с неверным определением символических ссылок перед доступом к файлу, позволяющая нарушителю выполнить произвольный код

CVSS3: 7
3 месяца назад

Уязвимостей на страницу