PeaZIP 2.6.1, 2.5.1, and previous versions on Windows allows user-assisted remote malicious users to execute arbitrary commands via a .zip archive with a .txt file whose name contains | (pipe) characters and a command.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
giorgio tani peazip |
||
giorgio tani peazip 2.4.1 |
||
giorgio tani peazip 1.10 |
||
giorgio tani peazip 1.9.3 |
||
giorgio tani peazip 1.6 |
||
giorgio tani peazip 1.5 |
||
giorgio tani peazip 2.2 |
||
giorgio tani peazip 2.1 |
||
giorgio tani peazip 1.8.2 |
||
giorgio tani peazip 1.8.1 |
||
giorgio tani peazip 1.2 |
||
giorgio tani peazip 1.1 |
||
giorgio tani peazip 2.4 |
||
giorgio tani peazip 2.3a |
||
giorgio tani peazip 1.9.2 |
||
giorgio tani peazip 1.9.1 |
||
giorgio tani peazip 1.9 |
||
giorgio tani peazip 1.4 |
||
giorgio tani peazip 1.3 |
||
giorgio tani peazip 2.6.1 |
||
giorgio tani peazip 2.0 |
||
giorgio tani peazip 1.11 |
||
giorgio tani peazip 1.8 |
||
giorgio tani peazip 1.7 |
||
giorgio tani peazip 1.0 |