CNNVD-202601-4202 Information

CNNVD ID

CNNVD-202601-4202

CVE-2025-11002

  • CNNVD Published: 2026-01-23

Description (Chinese)

7-Zip是7-Zip开源的一个压缩软件。 7-Zip存在路径遍历漏洞,该漏洞源于ZIP文件解析存在目录遍历,可能导致远程代码执行。

Description (English)

7-Zip is a compression software from 7-Zip open source. 7-Zip has a loophole in its path, which stems from the ZIP file resolution of the existence of a directory, which may lead to remote code execution.

Hazard Level

Medium

Vulnerability Type

路径遍历

Affected Vendor

7-Zip

Published

2026-01-23

Last Modified

2026-02-24

References

https://www.zerodayinitiative.com/advisories/ZDI-25-950/

Share on: