← Vulnerability feed

Vulnerability record · CVE-2007-6060 · published 20 November 2007

CVE-2007-6060: Ahnlab v3 internet security improper input validation vulnerability

Ahnlab · V3 Internet Security

AhnLab Antivirus 3 Internet Security 2008 Platinum appends data to a filename string at a location indicated by the "Filename length" field in a ZIP header, which allows remote attackers to cause a denial of service (machine crash) and possibly execute arbitrary code via a ZIP file in which this field's value is larger than the actual number of bytes in the filename.

9.3 CVSS 2.0 High EPSS 5.7% · top 7.3% CWE-20 · Improper input validation
9.3CVSS 2.0 base score
5.7%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
20References
16 Jun 2026Last modified by NVD

Description

AhnLab Antivirus 3 Internet Security 2008 Platinum appends data to a filename string at a location indicated by the "Filename length" field in a ZIP header, which allows remote attackers to cause a denial of service (machine crash) and possibly execute arbitrary code via a ZIP file in which this field's value is larger than the actual number of bytes in the filename.

AV:N/AC:M/Au:N/C:C/I:C/A:C

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2007-6060 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.3CVE-2008-5520Ahnlab v3 internet security improper input validation vulnerabilityAhnLab V3 2008.12.4.1 and possibly 2008.9.13.0, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an H…EPSS 1.9%7.8CVE-2013-3947Ahnlab v3 internet security memory buffer overflow vulnerabilityBuffer overflow in MedCoreD.sys in AhnLab V3 Internet Security 8.0.7.5 (Build 1373) allows local users to gain privileges via a crafted 0xA3350014 IO…EPSS 0.48%4.3CVE-2012-1459TAR parser malware detection bypass in multiple antivirus productsThe TAR file parser in dozens of antivirus products mishandles a TAR archive entry whose length field spans the entire entry plus part of the next en…EPSS 100%analysed4.3CVE-2012-1462ZIP parser in multiple antivirus products allows malware detection bypassThe ZIP file parser in numerous antivirus and endpoint protection products mishandles a ZIP archive containing an invalid data block at the beginning…EPSS 98%analysed4.3CVE-2012-1463Multiple antivirus ELF parsers bypassed via modified endianness fieldThe ELF file parser in a dozen antivirus products (AhnLab V3, Bitdefender, Quick Heal, Command, Comodo, eSafe, F-Prot, F-Secure, McAfee, Norman, nPro…EPSS 94%analysed4.3CVE-2012-1443RAR parser malware detection bypass in multiple antivirus enginesThe RAR file parser in dozens of antivirus products fails to correctly handle a RAR archive whose contents begin with an MZ character sequence, allow…EPSS 100%analysed4.3CVE-2012-1433Multiple antivirus EXE parsers allow malware detection bypassThe EXE file parser in several antivirus products (AhnLab V3 Internet Security, Emsisoft Anti-Malware, eSafe, Ikarus Virus Utilities T3, Panda Antivi…EPSS 94%analysed4.3CVE-2012-1434Malware scanners bypassed by crafted EXE parser inputThe EXE file parser in several antivirus products (AhnLab V3 Internet Security, Emsisoft Anti-Malware, Ikarus Virus Utilities T3 Command Line Scanner…EPSS 60%analysed

Source: NIST National Vulnerability Database (record CVE-2007-6060), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.