PoC Index

CVE-2009-4588

HIGH 9.3EPSS 32.0%

Heap-based buffer overflow in the WindsPlayerIE.View.1 ActiveX control in WindsPly.ocx 3.5.0.0 Beta, 3.0.0.5, and earlier in AwingSoft Awakening Web3D Player and Winds3D Viewer allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long SceneUrl property value, a different vulnerability than CVE-2009-2386. NOTE: some of these details are obtained from third party information.

CVSS v2.0
9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
32.04% chance of exploitation in the next 30 days, 98th percentile
Published
2010-01-07
Updated
2024-08-07

Proof-of-concept exploits (1)

Metasploit modules (1)

ExploitDB entries (2)

References

Related