CVE-2019-12807: Estsoft Alzip
High severity, CVSS 7.8. EPSS: 1.6% chance of exploitation in the next 30 days.
Alzip 10.83 and earlier version contains a stack-based buffer overflow vulnerability, caused by improper bounds checking during the parsing of crafted ISO archive file format. By persuading a victim to open a specially-crafted ISO archive file, an attacker could execution arbitrary code.
Affected products
- Estsoft Alzip: up to and including 10.83
Published 2019-08-13. Last modified 2026-06-17.