7.6
CVSSv2

CVE-2001-0198

Published: 03/05/2001 Updated: 19/12/2017
CVSS v2 Base Score: 7.6 | Impact Score: 10 | Exploitability Score: 4.9
VMScore: 765
Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in QuickTime Player plugin 4.1.2 (Japanese) allows remote malicious users to execute arbitrary commands via a long HREF parameter in an EMBED tag.

Vulnerable Product Search on Vulmon Subscribe to Product

apple quicktime 4.1.2

Exploits

source: wwwsecurityfocuscom/bid/2328/info Apple Quicktime plugin for Windows is vulnerable to a remote buffer overflow A maliciously-constructed web link statement in a remote HTML document, which contains excess data argumenting an EMBED tag, could permit execution of hostile code /*================================================== ...