Vulnerability Description
Stack-based buffer overflow in CursorArts ZipWrangler 1.20 allows user-assisted remote attackers to execute arbitrary code via a ZIP file containing a file with a long filename.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cursorarts | Zipwrangler | 1.20 |
Related Weaknesses (CWE)
References
- http://osvdb.org/64079
- http://secunia.com/advisories/39575Vendor Advisory
- http://www.corelan.be:8800/index.php/forum/security-advisories/corelan-10-031-zi
- https://seclists.org/fulldisclosure/2010/Apr/331
- http://osvdb.org/64079
- http://secunia.com/advisories/39575Vendor Advisory
- http://www.corelan.be:8800/index.php/forum/security-advisories/corelan-10-031-zi
- https://seclists.org/fulldisclosure/2010/Apr/331
FAQ
What is CVE-2010-1685?
CVE-2010-1685 is a vulnerability with a CVSS score of 9.3 (HIGH). Stack-based buffer overflow in CursorArts ZipWrangler 1.20 allows user-assisted remote attackers to execute arbitrary code via a ZIP file containing a file with a long filename.
How severe is CVE-2010-1685?
CVE-2010-1685 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2010-1685?
Check the references section above for vendor advisories and patch information. Affected products include: Cursorarts Zipwrangler.