9.3
CVSSv2

CVE-2008-0248

Published: 12/01/2008 Updated: 29/09/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in an ActiveX control in ccpm_0237.dll for StreamAudio ChainCast ProxyManager allows remote malicious users to execute arbitrary code via a long URL argument to the InternalTuneIn method.

Vulnerable Product Search on Vulmon Subscribe to Product

streamaudio chaincast proxymanager activex control

Exploits

<!-- StreamAudio ChainCast ProxyManager ccpm_0237dll SEH Overwrite Exploit Written by eb Shellcode is limited to about 680 bytes Tested on Windows XP SP2(fully patched) English, IE6, ccpm_0237dll 300237 Thanks to hdm and the Metasploit crew --> <html> <head> <title>StreamAudio ChainCast ProxyManager ccpm_0237 ...