PT-2005-2203 · X Ways · Winhex

Published

2005-04-19

·

Updated

2024-02-14

·

CVE-2005-1187

CVSS v2.0

5.1

Medium

VectorAV:N/AC:H/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions WinHex version 12.05 SR-14
Description A heap-based buffer overflow may occur due to a long file name argument, potentially allowing attackers to execute arbitrary code. However, since this issue is in the command line of an unprivileged program, it is likely that this is not a significant vulnerability.
Recommendations For WinHex version 12.05 SR-14, avoid using long file name arguments to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.

Fix

Related Identifiers

CVE-2005-1187

Affected Products

Winhex