E Merge maintains a narrow product portfolio centered on file-compression and archiving utilities such as UnACE and WinACE that serve users handling compressed archives. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by E Merge over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
Multiple directory traversal vulnerabilities in unace 1.2b allow attackers to overwrite arbitrary files via an ACE archive containing (1) ../ sequences or (2) absolute pathnames. | Feb 22, 2005 | 2.1 | 17 | NO | YES |
CVE-2005-0160MEDIUM Multiple buffer overflows in unace 1.2b allow attackers to execute arbitrary code via (1) 2 overflows in ACE archives, (2) a long command line argument, or (3) certain "Ready for n | Feb 22, 2005 | 5.1 | 16 | NO | NO |
CVE-2006-0981MEDIUM Directory traversal vulnerability in e-merge WinAce 2.6 and earlier allows remote attackers to create and overwrite arbitrary files via certain crafted pathnames in a (1) zip or (2 | Mar 3, 2006 | 4.0 | 14 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by E Merge.
Media articles that mention a CVE ID that affects a product developed by E Merge — matched by CVE ID, not by vendor name.