Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3jqv-gvhw-8crp

Опубликовано: 31 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.4
CVSS3: 9.8

Описание

Quick Player 1.3 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by crafting a malicious .m3l file with carefully constructed payload. Attackers can trigger the vulnerability by loading a specially crafted file through the application's file loading mechanism, potentially enabling remote code execution.

Quick Player 1.3 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by crafting a malicious .m3l file with carefully constructed payload. Attackers can trigger the vulnerability by loading a specially crafted file through the application's file loading mechanism, potentially enabling remote code execution.

EPSS

Процентиль: 46%
0.00235
Низкий

8.4 High

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 9.8
nvd
8 дней назад

Quick Player 1.3 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by crafting a malicious .m3l file with carefully constructed payload. Attackers can trigger the vulnerability by loading a specially crafted file through the application's file loading mechanism, potentially enabling remote code execution.

EPSS

Процентиль: 46%
0.00235
Низкий

8.4 High

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-120