10
CVSSv2

CVE-2022-28381

Published: 03/04/2022 Updated: 09/04/2022
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Mediaserver.exe in ALLMediaServer 1.6 has a stack-based buffer overflow that allows remote malicious users to execute arbitrary code via a long string to TCP port 888, a related issue to CVE-2017-17932.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

allmediaserver allmediaserver 1.6

Vendor Advisories

Check Point Reference: CPAI-2022-1929 Date Published: 27 Dec 2023 Severity: Critical ...

Github Repositories

CVE-2022-28381 ALLMediaServer 16 Remote - Buffer Overflow (SEH) ALLMediaServer-16-Buffer-Overflow(Metasploit) Proof and Exploit References nvdnistgov/vuln/detail/CVE-2022-28381 cvemitreorg/cgi-bin/cvenamecgi?name=CVE-2022-28381 wwwcveorg/CVERecord?id=CVE-2022-28381