peter bassill · operator
$ cve CVE-2004-0935 JSON

CVE-2004-0935 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 15.5% (pctl 97)

Patch early

A public exploit exists.

Description

Eset Anti-Virus before 1.020 (16th September 2004) allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS15.46% — more likely to be exploited than 97% of all CVEs
On CISA KEVno
Public exploityes
Published2005-01-27
Last modified2026-06-16

Affected (23)

VendorProduct
archive ziparchive zip
broadcombrightstor arcserve backup
broadcometrust antivirus
broadcometrust antivirus gateway
broadcometrust ez antivirus
broadcometrust ez armor
broadcometrust intrusion detection
broadcometrust secure content manager
broadcominoculateit
caetrust antivirus
caetrust secure content manager
eset softwarenod32 antivirus
gentoolinux
kaspersky labkaspersky anti-virus
mandrakesoftmandrake linux
mcafeeantivirus engine
rav antivirusrav antivirus desktop
rav antivirusrav antivirus for file servers
rav antivirusrav antivirus for mail servers
sophossophos anti-virus
sophossophos puremessage anti-virus
sophossophos small business suite
susesuse linux

Public exploits

SourceTitleDate
exploit-dbMultiple AntiVirus - '.zip' Detection Bypass2004-11-14

References

→ the Explorer  ·  watch your stack  ·  NVD