CVE-2007-5911
Viewpoint Media Player for IE 3.2 - Remote Stack Overflow (PoC)
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
Multiple stack-based buffer overflows in the AxMetaStream ActiveX control in AxMetaStream.dll 3.3.2.26 in Viewpoint Media Player 3.2 allow remote attackers to execute arbitrary code via a long string argument to the (1) BroadcastKey, (2) BroadcastKeyFileURL, (3) Component, (4) ComponentClassID, (5) ComponentFileName, (6) ExtraProperty, (7) Properties, (8) RequiredVersions, (9) Source, or (10) XMLText method.
Múltiples desbordamientos de búfer basados en pila en el control de ActiveX AxMetaStream en el AxMetaStream.dll 3.3.2.26 del Viewpoint Media Player 3.2 permiten a atacantes remotos ejecutar código de su elección a través del paso de un argumento de cadena largo a los métodos (1) BroadcastKey, (2) BroadcastKeyFileURL, (3) Component, (4) ComponentClassID, (5) ComponentFileName, (6) ExtraProperty, (7) Properties, (8) RequiredVersions, (9) Source o (10) XMLText.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2007-11-09 CVE Reserved
- 2007-11-10 CVE Published
- 2024-08-06 EPSS Updated
- 2024-08-07 CVE Updated
- 2024-08-07 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (5)
URL | Tag | Source |
---|---|---|
http://osvdb.org/40268 | Vdb Entry | |
http://shinnai.altervista.org/exploits/txt/TXT_dolp8rQrZmWLlINruy0o.html | X_refsource_misc | |
http://www.securityfocus.com/bid/26356 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/38287 | Vdb Entry |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/4610 | 2024-08-07 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Viewpoint Search vendor "Viewpoint" | Media Player Search vendor "Viewpoint" for product "Media Player" | 3.2 Search vendor "Viewpoint" for product "Media Player" and version "3.2" | - |
Affected
|