Show plain JSON{"cve": {"data_type": "CVE", "references": {"reference_data": [{"url": "http://secunia.com/secunia_research/2005-54/advisory", "name": "http://secunia.com/secunia_research/2005-54/advisory", "tags": [], "refsource": "MISC"}, {"url": "http://securitytracker.com/id?1015090", "name": "1015090", "tags": [], "refsource": "SECTRACK"}, {"url": "http://www.securityfocus.com/archive/1/414083", "name": "20051021 Secunia Research: ZipGenius Multiple Archive Handling BufferOverflow", "tags": [], "refsource": "BUGTRAQ"}, {"url": "http://www.securityfocus.com/bid/15161", "name": "15161", "tags": [], "refsource": "BID"}, {"url": "http://forum.zipgenius.it/index.php?showtopic=684", "name": "http://forum.zipgenius.it/index.php?showtopic=684", "tags": [], "refsource": "CONFIRM"}, {"url": "http://secunia.com/advisories/17061", "name": "17061", "tags": [], "refsource": "SECUNIA"}, {"url": "http://www.osvdb.org/20157", "name": "20157", "tags": [], "refsource": "OSVDB"}, {"url": "http://www.osvdb.org/20158", "name": "20158", "tags": [], "refsource": "OSVDB"}, {"url": "http://www.osvdb.org/20159", "name": "20159", "tags": [], "refsource": "OSVDB"}, {"url": "http://securityreason.com/securityalert/103", "name": "103", "tags": [], "refsource": "SREASON"}]}, "data_format": "MITRE", "description": {"description_data": [{"lang": "en", "value": "Multiple stack-based buffer overflows in ZipGenius 5.5.1.468 and 6.0.2.1041, and other versions before 6.0.2.1050, allow remote attackers to execute arbitrary code via (1) a ZIP archive that contains a file with a long filename, which is not properly handled by (a) zipgenius.exe, (b) zg.exe, (c) zgtips.dll, and (d) contmenu.dll; (2) a long original name in a (a) UUE, (b) XXE, or (c) MIM file, which is not properly handled by zipgenius.exe; or (3) an ACE archive with a file with a long filename, which is not properly handled by unacev2.dll."}]}, "problemtype": {"problemtype_data": [{"description": [{"lang": "en", "value": "CWE-119"}]}]}, "data_version": "4.0", "CVE_data_meta": {"ID": "CVE-2005-3317", "ASSIGNER": "cve@mitre.org"}}, "impact": {"baseMetricV2": {"cvssV2": {"version": "2.0", "baseScore": 7.5, "accessVector": "NETWORK", "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P", "authentication": "NONE", "integrityImpact": "PARTIAL", "accessComplexity": "LOW", "availabilityImpact": "PARTIAL", "confidentialityImpact": "PARTIAL"}, "severity": "HIGH", "impactScore": 6.4, "obtainAllPrivilege": false, "exploitabilityScore": 10.0, "obtainUserPrivilege": true, "obtainOtherPrivilege": false, "userInteractionRequired": false}}, "publishedDate": "2005-10-27T10:02Z", "configurations": {"nodes": [{"children": [], "operator": "OR", "cpe_match": [{"cpe23Uri": "cpe:2.3:a:zipgenius:zipgenius:*:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true, "versionEndIncluding": "standard_6.0.2.1041"}, {"cpe23Uri": "cpe:2.3:a:zipgenius:zipgenius:standard_5.5.1.468:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true}, {"cpe23Uri": "cpe:2.3:a:zipgenius:zipgenius:suite_5.5.1.468:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true}, {"cpe23Uri": "cpe:2.3:a:zipgenius:zipgenius:*:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true, "versionEndIncluding": "suite_6.0.2.1041"}]}], "CVE_data_version": "4.0"}, "lastModifiedDate": "2009-03-25T04:00Z"}