9.3
CVSSv2

CVE-2011-5162

Published: 15/09/2012 Updated: 29/08/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in GOM Player 2.1.33.5071 allows user-assisted remote malicious users to execute arbitrary code via a .ASX file with a long URI in the "ref href" tag. NOTE: this issue exists because of a CVE-2007-0707 regression.

Vulnerable Product Search on Vulmon Subscribe to Product

gomlab gom player 2.1.33.5071

Exploits

# Exploit Title: GOM Player Crafted ASX File Unicode Stack Buffer Overflow and Arbitrary Code Execution # Version: 21335071 # Date: 30-11-2011 # Author: Debasish Mandal & Peter Van Eeckhoutte (corelanc0d3r) # Email : debasishm89@gmailcom # Software Link: wwwgomlabcom/eng/GMP_downloadhtml # Category:: Local # Tested on: Windows XP ...