Lucene search

K
cve[email protected]CVE-2006-5198
HistoryNov 14, 2006 - 9:07 p.m.

CVE-2006-5198

2006-11-1421:07:00
web.nvd.nist.gov
26
cve-2006-5198
wzfileview
fileviewctrl
activex control
winzip 10.0
vulnerability
remote code execution
nvd

4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:H/Au:N/C:P/I:P/A:N

7.5 High

AI Score

Confidence

Low

0.963 High

EPSS

Percentile

99.5%

The WZFILEVIEW.FileViewCtrl.61 ActiveX control (aka Sky Software “FileView” ActiveX control) for WinZip 10.0 before build 7245 allows remote attackers to execute arbitrary code via unspecified “unsafe methods.”

Affected configurations

NVD
Node
winzipwinzipMatch10.0
CPENameOperatorVersion
winzip:winzipwinzipeq10.0

4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:H/Au:N/C:P/I:P/A:N

7.5 High

AI Score

Confidence

Low

0.963 High

EPSS

Percentile

99.5%