PT-2006-4242 · Oracle · Autovue Solidmodel Professional Desktop Edition

Publicado

2006-07-28

·

Atualizado

2018-10-18

·

CVE-2006-3350

CVSS v2.0

5.1

Média

VetorAV:N/AC:H/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions AutoVue SolidModel Professional Desktop Edition version 19.1 Build 5993
Description The issue allows user-assisted remote attackers to execute arbitrary code via a long filename in an archive file, specifically in ARJ, RAR, or ZIP archives.
Recommendations For AutoVue SolidModel Professional Desktop Edition version 19.1 Build 5993, consider avoiding the use of long filenames in archives until a patch is available. As a temporary workaround, restrict the handling of archive files to minimize the risk of exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2006-3350

Produtos afetados

Autovue Solidmodel Professional Desktop Edition