Known Vulnerabilities for products from Winzip

Listed below are 12 of the newest known vulnerabilities associated with the vendor "Winzip".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2008-3442 json WinZip before 11.0 does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute ... Not Provided 2008-08-01 2026-04-23
CVE-2007-0264 json Buffer overflow in Winzip32.exe in WinZip 9.0 allows local users to cause a denial of service (application crash) and possibl... Not Provided 2007-01-16 2026-04-23
CVE-2006-6884 json Buffer overflow in the WZFILEVIEW.FileViewCtrl.61 ActiveX control (aka Sky Software "FileView" ActiveX control) for WinZip 10... Not Provided 2006-12-31 2026-04-23
CVE-2006-5198 json The WZFILEVIEW.FileViewCtrl.61 ActiveX control (aka Sky Software "FileView" ActiveX control) for WinZip 10.0 before build 724... Not Provided 2006-11-14 2026-04-23
CVE-2006-3890 json Stack-based buffer overflow in the Sky Software FileView ActiveX control, as used in WinZip 10 before build 7245 and in certa... Not Provided 2006-11-21 2026-04-23
CVE-2004-1465 json Multiple buffer overflows in WinZip 9.0 and earlier may allow attackers to execute arbitrary code via multiple vectors, inclu... Not Provided 2004-12-31 2025-04-03
CVE-2004-0333 json Buffer overflow in the UUDeview package, as used in WinZip 6.2 through WinZip 8.1 SR-1, and possibly other packages, allows r... Not Provided 2004-11-23 2025-04-03
CVE-2004-0235 json Multiple directory traversal vulnerabilities in LHA 1.14 allow remote attackers or local users to create arbitrary files via ... Not Provided 2004-08-18 2025-04-03
CVE-2004-0234 json Multiple stack-based buffer overflows in the get_header function in header.c for LHA 1.14, as used in products such as Barrac... Not Provided 2004-08-18 2025-04-03
CVE-2003-1376 json WinZip 8.0 uses weak random number generation for password protected ZIP files, which allows local users to brute force the e... Not Provided 2003-12-31 2025-04-03
CVE-2002-0370 json Buffer overflow in the ZIP capability for multiple products allows remote attackers to cause a denial of service or execute a... Not Provided 2002-10-10 2025-04-03
CVE-2001-0449 json Buffer overflow in WinZip 8.0 allows attackers to execute arbitrary commands via a long file name that is processed by the /z... Not Provided 2001-06-27 2025-04-03

Known software with vulnerabilities from Winzip

Type Vendor Product Version
ApplicationWinzipSelf-extractor2.0
ApplicationWinzipWinzip-
ApplicationWinzipWinzipbar Toolbar6.7.0.6
ApplicationWinzipWinzip Command Line Support Add-on1.1