CVE-2013-5660
28Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 11%
from disclosure to weapon0 days
Published on NVDApr 25
1st PoCMay 1
exploitation probability
11%top 5% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Buffer overflow in Power Software WinArchiver 3.2 allows remote attackers to execute arbitrary code via a crafted .zip file.
Affected products
n/a · n/apublic PoCs found — 2
cve_referencepacketstormsecurity.com/files/121512/Winarchiver-3.2-Buffer-Overflow.htmlunverifiedexploitdbwww.exploit-db.com/exploits/25131unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://osvdb.org/ref/92/winarchiver-overflow.txthttp://osvdb.org/show/osvdb/92992http://packetstormsecurity.com/files/121512/Winarchiver-3.2-Buffer-Overflow.htmlhttp://realpentesting.blogspot.com.es/p/blog-page_3.htmlhttp://seclists.org/fulldisclosure/2013/Sep/8http://www.securityfocus.com/bid/59626