5
CVSSv2

CVE-2005-2384

Published: 27/07/2005 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Directory traversal vulnerability in a third-party compression library (UNACEV2.DLL), as used in avast! Antivirus Home/Professional Edition 4.6.665 and Server Edition 4.6.460, allows remote malicious users to write arbitrary files via an ACE archive containing filenames with (1) .. or (2) absolute pathnames.

Vulnerable Product Search on Vulmon Subscribe to Product

alwil avast antivirus 4.6.665

alwil avast antivirus 4.6.460