CVE-2019-12807: Estsoft Alzip

High severity, CVSS 7.8. EPSS: 1.6% chance of exploitation in the next 30 days.

Alzip 10.83 and earlier version contains a stack-based buffer overflow vulnerability, caused by improper bounds checking during the parsing of crafted ISO archive file format. By persuading a victim to open a specially-crafted ISO archive file, an attacker could execution arbitrary code.

Affected products

  • Estsoft Alzip: up to and including 10.83

Published 2019-08-13. Last modified 2026-06-17.