Bandisoft Bandizip 7.19

CPE Details

Bandisoft Bandizip 7.19
7.19
2022-04-08
11h58 +00:00
2022-05-13
14h41 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:bandisoft:bandizip:7.19:*:*:*:*:*:*:*

Informations

Vendor

bandisoft

Product

bandizip

Version

7.19

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2025-33027 2025-04-15 00h00 +00:00 In Bandisoft Bandizip through 7.37, there is a Mark-of-the-Web Bypass Vulnerability. This vulnerability allows attackers to bypass the Mark-of-the-Web protection mechanism on affected installations of Bandizip. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of archived files. When extracting files from a crafted archive that bears the Mark-of-the-Web, Bandizip does not propagate the Mark-of-the-Web to the extracted files. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current user.
7.8
High