9.3
CVSSv2

CVE-2009-0175

Published: 20/01/2009 Updated: 29/09/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Heap-based buffer overflow in Heathco Software MP3 TrackMaker 1.5 allows remote malicious users to cause a denial of service (application crash) and possibly execute arbitrary code via a long string in an invalid .mp3 file.

Vulnerable Product Search on Vulmon Subscribe to Product

heathcosoft mp3 trackmaker 1.5

Exploits

# #!/bin/perl # Author : HouSSamix # MP3 TrackMaker v15 mp3 File Heap Overflow PoC # wwwheathcosoftcom/software/mp3trackmaker/mp3tm15exe # open the program > browse (source file) > file exploit #EAX 41414141 <<< #ECX 000000F8 #EDX 0000020A #EBX 00000000 #ESP 0012F408 #EBP 0012F470 #ESI 00000000 #EDI 00000158 #EIP 7C ...