Skip to content
Auto-CTI
Back to today
MEDIUM A3

[UPDATE] 7-Zip: Vulnerability allows bypassing security restrictions

A BSI Warn- und Informationsdienst (WID): Schwachstellen-Informationen (Security Advisories) ·

Admiralty grading (A–F · 1–6)

Source reliability

  • A Completely reliable
  • B Usually reliable
  • C Fairly reliable
  • D Not usually reliable
  • E Unreliable
  • F Cannot be judged

Information credibility

  • 1 Confirmed
  • 2 Probably true
  • 3 Possibly true
  • 4 Doubtful
  • 5 Improbable
  • 6 Cannot be judged

NATO Admiralty (AJP-2.1) grades confidence, independent of the risk score. Cross-source corroboration isn't tracked for non-CVE news, so single-source items are capped at a lower credibility number; a low number does not imply low quality.

Key insight

7-Zip is part of the company's tech stack; the BSI advisory describes a vulnerability that can bypass security restrictions and manipulate data.

Description

The BSI Warning and Information Service reports a vulnerability in the compression software 7-Zip. A remote, anonymous attacker can exploit the vulnerability to bypass security restrictions and manipulate data. The advisory is marked as an update and contains no CVE number, no CVSS score, and no details on affected versions or exploitability. There is no indication of active exploitation or a public proof of concept.

Risk score

0
cvss base
0.00
kev bonus
0.00
epss bonus
0.00
poc bonus
0.00
raw before weight
0.00
industry weight
1.21
freshness factor
1.00
exploitability factor
1.00
days old
0.00
vendor mismatch penalty
0.00

Path: operational

ESC