PoC Index

CVE-2009-0187

HIGH 9.3EPSS 40.0%

Stack-based buffer overflow in Orbit Downloader 2.8.2 and 2.8.3, and possibly other versions before 2.8.5, allows remote attackers to execute arbitrary code via a crafted HTTP URL with a long host name, which is not properly handled when constructing a "Connecting" log message.

CVSS v2.0
9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
39.98% chance of exploitation in the next 30 days, 99th percentile
Published
2009-02-26
Updated
2024-08-07

Metasploit modules (1)

ExploitDB entries (2)

References

Related