CVE-2006-5198: Medium severity winzip winzip vulnerability
Published Nov 14, 2006
·Updated
The WZFILEVIEW.FileViewCtrl.61 ActiveX control (aka Sky Software "FileView" ActiveX control) for WinZip 10.0 before build 7245 allows remote attackers to execute arbitrary code via unspecified "unsafe methods."
Affected Software
1 affected component
Winzip Winzip=10.0
Event History
Nov 14, 2006
CVE Published
09:07 PM
Data Sourced
via NVD·09:07 PM
DescriptionSeverityAffected Software
Nov 15, 2006
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-5198?
CVE-2006-5198 is considered a critical vulnerability as it allows remote attackers to execute arbitrary code.
2
How do I fix CVE-2006-5198?
To fix CVE-2006-5198, update to WinZip version 10.0 build 7245 or later.
3
What software is affected by CVE-2006-5198?
CVE-2006-5198 affects the WinZip 10.0 version prior to build 7245.
4
What kind of attacks can exploit CVE-2006-5198?
CVE-2006-5198 can be exploited via remote attacks that utilize unsafe methods in the ActiveX control.
5
When was CVE-2006-5198 publicly disclosed?
CVE-2006-5198 was publicly disclosed in 2006.