9.3
CVSSv2

CVE-2008-3008

Published: 11/09/2008 Updated: 30/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 940
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in the WMEncProfileManager ActiveX control in wmex.dll in Microsoft Windows Media Encoder 9 Series allows remote malicious users to execute arbitrary code via a long first argument to the GetDetailsString method, aka "Windows Media Encoder Buffer Overrun Vulnerability."

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows_media_encoder 9_series

microsoft windows_2003_server -

microsoft windows_xp -

microsoft windows-nt xp

microsoft windows_2000 -

Exploits

## # $Id: ms08_053_mediaencoderrb 9262 2010-05-09 17:45:00Z jduck $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/core' ...
<html> <pre> ============================================================================= MS08-053 Windows Media Encoder wmexdll ActiveX Control Buffer Overflow ============================================================================= Calc execution POC Exploit for WinXP SP2 PRO English / IE60 SP2 Found by : Nguyen Mi ...