Kaspersky 3.x to 4.x allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.
No PoCs from references.
- https://github.com/ARPSyndicate/cve-scores