Back

CVE-2005-1187

Heap-based buffer overflow in WinHex 12.05 SR-14, and possibly other versions, may allow attackers to execute arbitrary code via a long file name argument. NOTE: since this overflow is in the command line of an unprivileged program, it is highly likely that this is not a vulnerability.

Published: May 2, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
x-ways_software_technology_ag winhex 12.05_sr-14

GitHub Security Advisory GHSA-hr3f-3j4g-79j5

Heap-based buffer overflow in WinHex 12.05 SR-14, and possibly other versions, may allow...

Risk Scores

CVSS Score 5.1 / 10
EPSS Score 2.05%

Top 20% most likely to be exploited

Threat Score 21 / 100

Data Sources

NVD EPSS GitHub