9.3
CVSSv2

CVE-2009-2934

Published: 21/08/2009 Updated: 19/09/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 940
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple stack-based buffer overflows in xaudio.dll in Programmed Integration PIPL 2.5.0 and 2.5.0D allow remote malicious users to execute arbitrary code via a long string in a (1) .pls or (2) .pl playlist file.

Vulnerable Product Search on Vulmon Subscribe to Product

programmedintegration pipl 2.5.0

programmedintegration pipl 2.5.0d

Exploits

#!/usr/bin/perl # by hack4love # hack4love@hotmailcom # pIPL V 250 (PLS /PL) Universal Local Buffer Exploit (SEH) # wwwprogrammedintegrationcom/files/piplexe # ## easy #### this work sooooooooo good############################ #################################################################### # USE>>LOAD PLAYLIST>>HACK4 ...
#!/usr/bin/python # ############################################################# # PIPL <= 250 (m3u File) Universal bof exploit (SEH) # Coded by: Steven Seeley aka mr_me # email: info [At] net-ninja [d0t] net # Download: wwwprogrammedintegrationcom/files/piplexe # Tested on Wind0ws XP sp3 & Vist@ # SEH overwrite, just for kick ...