PT-2006-4242 · Oracle · Autovue Solidmodel Professional Desktop Edition
Publicado
2006-07-28
·
Atualizado
2018-10-18
·
CVE-2006-3350
CVSS v2.0
5.1
Média
| Vetor | AV:N/AC:H/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
AutoVue SolidModel Professional Desktop Edition version 19.1 Build 5993
Description
The issue allows user-assisted remote attackers to execute arbitrary code via a long filename in an archive file, specifically in ARJ, RAR, or ZIP archives.
Recommendations
For AutoVue SolidModel Professional Desktop Edition version 19.1 Build 5993, consider avoiding the use of long filenames in archives until a patch is available. As a temporary workaround, restrict the handling of archive files to minimize the risk of exploitation.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Autovue Solidmodel Professional Desktop Edition