4.3
CVSSv2

CVE-2008-0625

Published: 06/02/2008 Updated: 29/09/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Buffer overflow in the MediaGrid ActiveX control (mediagrid.dll) in Yahoo! Music Jukebox 2.2.2.56 allows remote malicious users to execute arbitrary code via a long argument to the AddBitmap method.

Vulnerable Product Search on Vulmon Subscribe to Product

yahoo music jukebox 2.2.2.56

Exploits

<!-- Yahoo! JukeBox MediaGrid ActiveX Control mediagriddll AddBitmap() Buffer Overflow Exploit written by eb Tested on Windows XP SP2(fully patched) English, IE6, mediagriddll version 22256 Thanks to hdm and the Metasploit crew --> <html> <head> <title>Yahoo! JukeBox MediaGrid ActiveX Control mediagriddll Add ...