vendor:
Shellzip
by:
Sud0
7,8
CVSS
HIGH
SEH
119
CWE
Product Name: Shellzip
Affected Version From: 3.0 Beta 3
Affected Version To: 3.0 Beta 3
Patch Exists: Yes
Related CWE: N/A
CPE: a:shellzip:shellzip:3.0_beta_3
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2010
Shellzip v3.0 Beta 3 (.zip) 0day Stack Buffer Overflow PoC exploit
A proof-of-concept exploit for a stack buffer overflow vulnerability in Shellzip v3.0 Beta 3 (.zip). The vulnerability is caused due to a boundary error when processing .zip files, which can be exploited to cause a stack-based buffer overflow via a specially crafted .zip file.
Mitigation:
Upgrade to the latest version of Shellzip v3.0 Beta 3 (.zip)