9.3
CVSSv2

CVE-2006-6261

Published: 04/12/2006 Updated: 19/10/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in Quintessential Player 4.50.1.82 and previous versions allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a crafted (1) M3u or (2) M3u-8 file; or a (3) crafted PLS file with a long value in the (a) NumberofEntries, (b) Length (aka Length1), (c) Filename (aka File1), (d) Title (aka Title1) field, or other unspecified fields.

Vulnerable Product Search on Vulmon Subscribe to Product

quinnware quintessential_player

Exploits

/* 0-day Quintessential Player <= 450182 Playlist Denial Of Service PoC ======================================================================== ======================================================================== Quintessential Player 450182 and lower experiance a memory corruption when attempting to parse out malformed Playlist files ...