First published: Wed Jun 27 2001(Updated: )
Buffer overflow in WinZip 8.0 allows attackers to execute arbitrary commands via a long file name that is processed by the /zipandemail command line option.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
WinZip WinZip | =8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0449 is considered a significant vulnerability due to its potential for remote code execution.
To fix CVE-2001-0449, users should upgrade WinZip to a version that is not affected by this buffer overflow vulnerability.
CVE-2001-0449 specifically affects WinZip version 8.0.
CVE-2001-0449 is a buffer overflow vulnerability that allows attackers to execute arbitrary commands.
Attackers can exploit CVE-2001-0449 by providing a long file name through the /zipandemail command line option.