Lucene search

K
cveMitreCVE-2004-1495
HistoryFeb 19, 2005 - 5:00 a.m.

CVE-2004-1495

2005-02-1905:00:00
mitre
web.nvd.nist.gov
26
cve-2004-1495
winrar
denial of service
application crash
zip archive
remote attackers

CVSS2

2.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:N/I:N/A:P

AI Score

7.1

Confidence

High

EPSS

0.008

Percentile

82.1%

The Repair Archive command in WinRAR 3.40 allows remote attackers to cause a denial of service (application crash) via a corrupt ZIP archive.

Affected configurations

Nvd
Node
rarlabwinrarMatch2.90
OR
rarlabwinrarMatch3.0.0
OR
rarlabwinrarMatch3.10
OR
rarlabwinrarMatch3.10_beta3
OR
rarlabwinrarMatch3.10_beta5
OR
rarlabwinrarMatch3.11
OR
rarlabwinrarMatch3.20
OR
rarlabwinrarMatch3.40
VendorProductVersionCPE
rarlabwinrar2.90cpe:2.3:a:rarlab:winrar:2.90:*:*:*:*:*:*:*
rarlabwinrar3.0.0cpe:2.3:a:rarlab:winrar:3.0.0:*:*:*:*:*:*:*
rarlabwinrar3.10cpe:2.3:a:rarlab:winrar:3.10:*:*:*:*:*:*:*
rarlabwinrar3.10_beta3cpe:2.3:a:rarlab:winrar:3.10_beta3:*:*:*:*:*:*:*
rarlabwinrar3.10_beta5cpe:2.3:a:rarlab:winrar:3.10_beta5:*:*:*:*:*:*:*
rarlabwinrar3.11cpe:2.3:a:rarlab:winrar:3.11:*:*:*:*:*:*:*
rarlabwinrar3.20cpe:2.3:a:rarlab:winrar:3.20:*:*:*:*:*:*:*
rarlabwinrar3.40cpe:2.3:a:rarlab:winrar:3.40:*:*:*:*:*:*:*

CVSS2

2.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:N/I:N/A:P

AI Score

7.1

Confidence

High

EPSS

0.008

Percentile

82.1%

Related for CVE-2004-1495