// For flags

CVE-2002-0370

 

Severity Score

7.5
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Buffer overflow in the ZIP capability for multiple products allows remote attackers to cause a denial of service or execute arbitrary code via ZIP files containing entries with long filenames, including (1) Microsoft Windows 98 with Plus! Pack, (2) Windows XP, (3) Windows ME, (4) Lotus Notes R4 through R6 (pre-gold), (5) Verity KeyView, and (6) Stuffit Expander before 7.0.

Desbordamiento de búfer en la capacidad ZIP de múltiples productos permite a atacantes remotos causar una denegación de servicio o ejecutar código arbitrario mediante ficheros ZIP que contienen nombres de ficheros largos, incluyendo
Microsoft Windows 98 con el paquete Plus!
Windows XP
Windows Me
Lotus Notes R4 a R6 (pre-gold)
Verity KeyView, y
Stuffit Expander antes de 7.0.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2002-05-08 CVE Reserved
  • 2002-10-05 CVE Published
  • 2023-08-03 EPSS Updated
  • 2024-08-08 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Allume Systems Division
Search vendor "Allume Systems Division"
Stuffit Expander
Search vendor "Allume Systems Division" for product "Stuffit Expander"
6.5.2
Search vendor "Allume Systems Division" for product "Stuffit Expander" and version "6.5.2"
-
Affected
Ibm
Search vendor "Ibm"
Lotus Notes
Search vendor "Ibm" for product "Lotus Notes"
<= 4.5
Search vendor "Ibm" for product "Lotus Notes" and version " <= 4.5"
-
Affected
Ibm
Search vendor "Ibm"
Lotus Notes
Search vendor "Ibm" for product "Lotus Notes"
5.0
Search vendor "Ibm" for product "Lotus Notes" and version "5.0"
-
Affected
Ibm
Search vendor "Ibm"
Lotus Notes
Search vendor "Ibm" for product "Lotus Notes"
5.0.1
Search vendor "Ibm" for product "Lotus Notes" and version "5.0.1"
-
Affected
Ibm
Search vendor "Ibm"
Lotus Notes
Search vendor "Ibm" for product "Lotus Notes"
5.0.2
Search vendor "Ibm" for product "Lotus Notes" and version "5.0.2"
-
Affected
Ibm
Search vendor "Ibm"
Lotus Notes
Search vendor "Ibm" for product "Lotus Notes"
5.0.3
Search vendor "Ibm" for product "Lotus Notes" and version "5.0.3"
-
Affected
Ibm
Search vendor "Ibm"
Lotus Notes
Search vendor "Ibm" for product "Lotus Notes"
5.0.4
Search vendor "Ibm" for product "Lotus Notes" and version "5.0.4"
-
Affected
Ibm
Search vendor "Ibm"
Lotus Notes
Search vendor "Ibm" for product "Lotus Notes"
5.0.5
Search vendor "Ibm" for product "Lotus Notes" and version "5.0.5"
-
Affected
Ibm
Search vendor "Ibm"
Lotus Notes
Search vendor "Ibm" for product "Lotus Notes"
5.0.9a
Search vendor "Ibm" for product "Lotus Notes" and version "5.0.9a"
-
Affected
Ibm
Search vendor "Ibm"
Lotus Notes
Search vendor "Ibm" for product "Lotus Notes"
5.0.10
Search vendor "Ibm" for product "Lotus Notes" and version "5.0.10"
-
Affected
Ibm
Search vendor "Ibm"
Lotus Notes
Search vendor "Ibm" for product "Lotus Notes"
5.0.11
Search vendor "Ibm" for product "Lotus Notes" and version "5.0.11"
-
Affected
Ibm
Search vendor "Ibm"
Lotus Notes
Search vendor "Ibm" for product "Lotus Notes"
r5
Search vendor "Ibm" for product "Lotus Notes" and version "r5"
-
Affected
Ibm
Search vendor "Ibm"
Lotus Notes
Search vendor "Ibm" for product "Lotus Notes"
r6
Search vendor "Ibm" for product "Lotus Notes" and version "r6"
-
Affected
Verity
Search vendor "Verity"
Keyview Viewing Sdk
Search vendor "Verity" for product "Keyview Viewing Sdk"
gold
Search vendor "Verity" for product "Keyview Viewing Sdk" and version "gold"
-
Affected
Winzip
Search vendor "Winzip"
Winzip
Search vendor "Winzip" for product "Winzip"
7.0
Search vendor "Winzip" for product "Winzip" and version "7.0"
-
Affected
Microsoft
Search vendor "Microsoft"
Windows 98 Plus Pack
Search vendor "Microsoft" for product "Windows 98 Plus Pack"
*-
Affected
Microsoft
Search vendor "Microsoft"
Windows Me
Search vendor "Microsoft" for product "Windows Me"
*-
Affected
Microsoft
Search vendor "Microsoft"
Windows Xp
Search vendor "Microsoft" for product "Windows Xp"
*home
Affected
Microsoft
Search vendor "Microsoft"
Windows Xp
Search vendor "Microsoft" for product "Windows Xp"
*gold, professional
Affected
Microsoft
Search vendor "Microsoft"
Windows Xp
Search vendor "Microsoft" for product "Windows Xp"
*sp1, home
Affected