Alzip

Vendor:

First CVE: Oct 14, 2005 · Active for 20 years

8
Total CVEs
More Total CVEs than 85% of tracked products
1.1
Avg CVEs / Year
Higher CVE frequency than 55% of tracked products
7.2
Avg CVSS
Higher Avg CVSS than 45% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Alzip over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 14, 2005
20 years ago
Most Recent CVE
Dec 3, 2025
233 days ago

CVE Severity & Scoring

Alzip8 CVEs
All CVEs352,294 CVEs
MediumHigh
Attack Vector
Local5 (62.5%)
Network1 (12.5%)
Unknown2 (25.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low6 (75.0%)
High0 (0.0%)
Unknown2 (25.0%)
User Interaction
None1 (12.5%)
Unknown2 (25.0%)
Required4 (50.0%)
Privileges Required
Low1 (12.5%)
High0 (0.0%)
None5 (62.5%)
Unknown2 (25.0%)

Top CVEs

Signals from CVEs in this product scope (8 CVEs).

8 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Buffer overflow in ALZip 8.21 and earlier allows remote attackers to execute arbitrary code via a crafted mim file.
Jul 7, 20119.330NONO
Alzip 10.76.0.0 and earlier is vulnerable to a stack overflow caused by improper bounds checking. By persuading a victim to open a specially-crafted LZH archive file, a attacker co
Dec 21, 20187.825NONO
Stack-based buffer overflow in ESTsoft ALZip 8.51 and earlier allows remote attackers to execute arbitrary code via a crafted MS-DOS device file, as demonstrated by use of "AUX" as
Aug 19, 20177.825NONO
Alzip 10.83 and earlier version contains a stack-based buffer overflow vulnerability, caused by improper bounds checking during the parsing of crafted ISO archive file format. By p
Aug 13, 20197.824NONO
ESTsoft ALZip before 10.76 allows local users to execute arbitrary code via creating a malicious .DLL file and installing it in a specific directory: %PROGRAMFILES%\ESTsoft\ALZip\F
May 17, 20187.822NONO
Protection Mechanism Failure vulnerability in ESTsoft ALZip on Windows allows SmartScreen bypass.This issue affects ALZip: from 12.01 before 12.29.
Dec 3, 20256.221NONO
ALSong 3.46 and earlier version contain a Document Object Model (DOM) based cross-site scripting vulnerability caused by improper validation of user input. A remote attacker could
May 15, 20206.121NONO
Multiple buffer overflows in ALZip 6.12 (Korean), 6.1 (International), and 5.52 (English) allow remote attackers to execute arbitrary code via a long filename in a compressed (1) A
Oct 14, 20055.116NONO

Exploit Exposure

Signals from CVEs in this product scope (8 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (8 CVEs).

Media Mentions

Signals from CVEs in this product scope (8 CVEs).

Top CNAs Publishing CVEs For Alzip

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
8.1219.35.5%00
8.019.35.5%00
6.1_international15.13.1%00
6.12_korean15.13.1%00
5.52_english15.13.1%00