9.3
CVSSv2

CVE-2009-1660

Published: 18/05/2009 Updated: 29/09/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in URUWorks ViPlay3 3.0 and previous versions allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a long file entry in a .vpl file.

Vulnerable Product Search on Vulmon Subscribe to Product

urusoft viplay3 3.0

Exploits

#/usr/bin/perl # # ViPlay3 <= 300 (vpl) Local Stack Overflow PoC # # Product web page: wwwurusoftnet/ # Tested on Microsoft Windows XP Professional SP3 (English) # Vulnerability discovered by Gjoko 'LiquidWorm' Krstic # liquidworm gmail com # wwwzeroscienceorg/ # 08052009 $b= "[General]\r\n" "Title=Proof of Concept\r\ ...