PoC Index

CVE-2009-1642

HIGH 9.3EPSS 6.9%

Multiple stack-based buffer overflows in Mini-stream ASX to MP3 Converter 3.0.0.7 allow remote attackers to execute arbitrary code via (1) a long rtsp URL in a .ram file and (2) a long string in the HREF attribute of a REF element in a .asx file. NOTE: the latter was also subsequently reported in "prior to 3.1.3.7."

CVSS v2.0
9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
6.86% chance of exploitation in the next 30 days, 94th percentile
Published
2009-05-15
Updated
2024-08-07

ExploitDB entries (6)

References

Related