Vulnerabilities > SKY Software

DATE CVE VULNERABILITY TITLE RISK
2007-05-24 CVE-2007-2848 Buffer Overflow vulnerability in SKY Software Shcombobox Activex Control and Shell Megapack Activex
Stack-based buffer overflow in the SetPath function in the shComboBox ActiveX control (shcmb80.ocx) in Sky Software Shell MegaPack ActiveX 8.0 allows remote attackers to execute arbitrary code via a long argument.
network
low complexity
sky-software
critical
10.0
2006-11-21 CVE-2006-3890 Remote Code Execution vulnerability in WinZip WZFileView.FileViewCtrl.61 ActiveX Control
Stack-based buffer overflow in the Sky Software FileView ActiveX control, as used in WinZip 10 before build 7245 and in certain other applications, allows remote attackers to execute arbitrary code via a long FilePattern attribute in a WZFILEVIEW object, a different vulnerability than CVE-2006-5198.
network
sky-software winzip
critical
9.3