9.3
CVSSv2

CVE-2009-3969

Published: 18/11/2009 Updated: 19/09/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in Faslo Player 7.0 allows remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a .m3u playlist file.

Vulnerable Product Search on Vulmon Subscribe to Product

faslo faslo player 7.0

Exploits

#!/usr/bin/perl # Found By :: HACK4LOVE # hack4love@hotmailcom # Faslo Player 70 (m3u) Local Buffer Overflow PoC # wwwrspqorg/faslo/fs7setupexe ############################################################ ##EAX 41414141 ##ECX 004A7CB0 faslow004A7CB0 ##EDX 00145920 ##EBX 00000000 ##ESP 0012F5B0 ##EBP 0012FC84 ##ESI 003F9BC9 ##EDI 003F9 ...