CVE-2006-6884

EXPLOITED

WinZip 10.0 Build 6667 - Buffer Overflow

Title source: llm

Description

Buffer overflow in the WZFILEVIEW.FileViewCtrl.61 ActiveX control (aka Sky Software "FileView" ActiveX control) for WinZip 10.0 Build 6667 allows remote attackers to execute arbitrary code via a long argument to the CreateNewFolderFromName method, a different vulnerability than CVE-2006-5198.

Exploits (3)

exploitdb WORKING POC VERIFIED
by XiaoHui · htmlremotewindows
https://www.exploit-db.com/exploits/3055
exploitdb WORKING POC VERIFIED
by prdelka · cremotewindows
https://www.exploit-db.com/exploits/2785
exploitdb WORKING POC VERIFIED
by prdelka · htmldoswindows
https://www.exploit-db.com/exploits/2783

Scores

EPSS 0.1157
EPSS Percentile 93.7%

Details

VulnCheck KEV 2009-03-20
CWE
CWE-119
Status published
Products (1)
winzip/winzip 10.0_build_6667
Published Dec 31, 2006
Tracked Since Feb 18, 2026