9.3
CVSSv2

CVE-2009-1260

Published: 07/04/2009 Updated: 29/09/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 940
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple stack-based buffer overflows in UltraISO 9.3.3.2685 and previous versions allow remote malicious users to cause a denial of service (crash) or execute arbitrary code via a crafted (1) CCD or (2) IMG file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ezbsystems ultraiso 9.2

ezbsystems ultraiso 9.1.2

ezbsystems ultraiso 8.51

ezbsystems ultraiso 8.2

ezbsystems ultraiso 7.6

ezbsystems ultraiso 7.56

ezbsystems ultraiso 7.22_me

ezbsystems ultraiso 7.21_sr-2

ezbsystems ultraiso 7.21_sr-1

ezbsystems ultraiso 6.52

ezbsystems ultraiso 6.51

ezbsystems ultraiso 5.0

ezbsystems ultraiso 5.1

ezbsystems ultraiso 9.0

ezbsystems ultraiso 8.66

ezbsystems ultraiso 8.65

ezbsystems ultraiso 8.12

ezbsystems ultraiso 8

ezbsystems ultraiso 7.55

ezbsystems ultraiso 7.52

ezbsystems ultraiso 7.1

ezbsystems ultraiso 7.0

ezbsystems ultraiso 6.5

ezbsystems ultraiso 6.1

ezbsystems ultraiso 4.5

ezbsystems ultraiso 4.1

ezbsystems ultraiso 9.3.1

ezbsystems ultraiso 8.63

ezbsystems ultraiso 8.62

ezbsystems ultraiso 7.66

ezbsystems ultraiso 7.65_sr-2

ezbsystems ultraiso 7.51

ezbsystems ultraiso 7.5

ezbsystems ultraiso 6.56_sr-2

ezbsystems ultraiso 6.56_sr-1

ezbsystems ultraiso 6.0

ezbsystems ultraiso 5.55_sr-2

ezbsystems ultraiso 4.0

ezbsystems ultraiso 3.1_sr2

ezbsystems ultraiso 9.3.2

ezbsystems ultraiso 9.3

ezbsystems ultraiso 8.61

ezbsystems ultraiso 8.6

ezbsystems ultraiso 7.65

ezbsystems ultraiso 7.62

ezbsystems ultraiso 7.25

ezbsystems ultraiso 7.23

ezbsystems ultraiso 6.52_sr-2

ezbsystems ultraiso 6.52_sr-1

ezbsystems ultraiso 5.55_sr-1

ezbsystems ultraiso 5.55

ezbsystems ultraiso 3.1_sr1

ezbsystems ultraiso 3.1

ezbsystems ultraiso

Exploits

#!/usr/bin/perl # # UltraISO <= 9332685 CCD/IMG Universal Buffer Overflow Exploit # ---------------------------------------------------------------- # Discovered and Exploited by SkD (skdrat@hotmailcom) # # A nice exploit for this software that was just recently # patched after a few other discoveries in it # This is 0day at the ...
## # $Id: ultraiso_ccdrb 9179 2010-04-30 08:40:19Z jduck $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/core' class Met ...