CVE-2009-2261

PeaZIP 2.6.1, 2.5.1, and earlier on Windows allows user-assisted remote attackers to execute arbitrary commands via a .zip archive with a .txt file whose name contains | (pipe) characters and a command.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 98%
VendorProductVersion
giorgio_tanipeazip
𝑥
≤ 2.5.1
giorgio_tanipeazip
1.0
giorgio_tanipeazip
1.1
giorgio_tanipeazip
1.2
giorgio_tanipeazip
1.3
giorgio_tanipeazip
1.4
giorgio_tanipeazip
1.5
giorgio_tanipeazip
1.6
giorgio_tanipeazip
1.7
giorgio_tanipeazip
1.8
giorgio_tanipeazip
1.8.1
giorgio_tanipeazip
1.8.2
giorgio_tanipeazip
1.9
giorgio_tanipeazip
1.9.1
giorgio_tanipeazip
1.9.2
giorgio_tanipeazip
1.9.3
giorgio_tanipeazip
1.10
giorgio_tanipeazip
1.11
giorgio_tanipeazip
2.0
giorgio_tanipeazip
2.1
giorgio_tanipeazip
2.2
giorgio_tanipeazip
2.3a:a
giorgio_tanipeazip
2.4
giorgio_tanipeazip
2.4.1
giorgio_tanipeazip
2.6.1
𝑥
= Vulnerable software versions