9.3
CVSSv2

CVE-2009-2970

Published: 19/10/2009 Updated: 10/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in the GetUiDllVersion function in an ActiveX control in UiCheck.dll prior to 1.0.0.7 in UiTV UiPlayer, as used in BaiduX and other products, allows remote malicious users to execute arbitrary code via the filename parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

uitv uiplayer

baidu baidux