Multiple directory traversal vulnerabilities in Allume StuffIt Standard and Deluxe 9.0, ZipMagic Deluxe 9.0, and StuffIt Expander 9.0.0.21 Engine 9.0.0.21 allow remote attackers to create and overwrite arbitrary files via certain crafted pathnames in a (1) zip or (2) tar archive.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:07
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/19010 - Vendor Advisory | |
References | () http://www.hamid.ir/security/stuffit.txt - | |
References | () http://www.osvdb.org/23463 - | |
References | () http://www.securityfocus.com/archive/1/425972/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/16806 - | |
References | () http://www.vupen.com/english/advisories/2006/0732 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/24886 - |
Information
Published : 2006-02-28 11:02
Updated : 2024-11-21 00:07
NVD link : CVE-2006-0926
Mitre link : CVE-2006-0926
CVE.ORG link : CVE-2006-0926
JSON object : View
Products Affected
smithmicro
- stuffit_deluxe
- stuffit_expander
- zipmagic_deluxe
- stuffit_standard
CWE