Multiple directory traversal vulnerabilities in Allume StuffIt Standard and Deluxe 9.0, ZipMagic Deluxe 9.0, and StuffIt Expander 9.0.0.21 Engine 9.0.0.21 allow remote attackers to create and overwrite arbitrary files via certain crafted pathnames in a (1) zip or (2) tar archive.
                
            References
                    Configurations
                    Configuration 1 (hide)
            
            
  | 
    
History
                    21 Nov 2024, 00:07
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () http://secunia.com/advisories/19010 - Vendor Advisory | |
| References | () http://www.hamid.ir/security/stuffit.txt - | |
| References | () http://www.osvdb.org/23463 - | |
| References | () http://www.securityfocus.com/archive/1/425972/100/0/threaded - | |
| References | () http://www.securityfocus.com/bid/16806 - | |
| References | () http://www.vupen.com/english/advisories/2006/0732 - | |
| References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/24886 - | 
Information
                Published : 2006-02-28 11:02
Updated : 2025-04-03 01:03
NVD link : CVE-2006-0926
Mitre link : CVE-2006-0926
CVE.ORG link : CVE-2006-0926
JSON object : View
Products Affected
                smithmicro
- stuffit_standard
 - stuffit_deluxe
 - stuffit_expander
 - zipmagic_deluxe
 
CWE
                