606
VMScore

CVE-2019-9766

Published: 14/03/2019 Updated: 24/08/2020
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 606
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Stack-based buffer overflow in Free MP3 CD Ripper 2.6, when converting a file, allows user-assisted remote malicious users to execute arbitrary code via a crafted .mp3 file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cleanersoft free mp3 cd ripper 2.6

Github Repositories

Free MP3 CD Ripper 2.6 版本中存在栈缓冲区溢出漏洞 (CVE-2019-9766),远程攻击者可借助特制的 .mp3 文件利用该漏洞执行任意代码。

CVE-2019-9766 利用 Free MP3 CD Ripper26 版本存在的缓冲区溢出漏洞,构造特殊的 MP3 文件,攻击者在使用播放器进行播放时,音频文件蜜饵利用缓冲区溢出漏洞执行任意代码。 复现 攻击机:kali201903 (192168198142) 受害机:windows10 21H1 (192168198137) 在受害机上安装好 Free MP3 CD Ripper 26,在 kali 机

CVE-2019-9766 React

CVE-2019-9766 Do my best About CVE Free MP3 CD Ripper It is a switcher between mp3 files and other filetype (converting a file) Bug According to the NVD we can find that, in the vision 26 there is a Stack-based Overflow in the Buffer Area So we can create a Poc for it Filetype changed to mp3 and attack it from remote Trap Vision Free MP3 CD Ripper 26 Enviorment send: Ub

CVE-2019-9766 React

CVE-2019-9766 Do my best About CVE Free MP3 CD Ripper It is a switcher between mp3 files and other filetype (converting a file) Bug According to the NVD we can find that, in the vision 26 there is a Stack-based Overflow in the Buffer Area So we can create a Poc for it Filetype changed to mp3 and attack it from remote Trap Vision Free MP3 CD Ripper 26 Enviorment send: Ub

CVE-2019-9766 React

CVE-2019-9766 Do my best About CVE Free MP3 CD Ripper It is a switcher between mp3 files and other filetype (converting a file) Bug According to the NVD we can find that, in the vision 26 there is a Stack-based Overflow in the Buffer Area So we can create a Poc for it Filetype changed to mp3 and attack it from remote Trap Vision Free MP3 CD Ripper 26 Enviorment send: Ub