Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cq58-fxj2-f59g

Опубликовано: 29 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.4
CVSS3: 9.8

Описание

Free MP3 CD Ripper 2.8 contains a stack buffer overflow vulnerability that allows remote attackers to execute arbitrary code by crafting a malicious WAV file with oversized payload. Attackers can leverage a specially crafted exploit file with shellcode, SEH bypass, and egghunter technique to achieve remote code execution on vulnerable Windows systems.

Free MP3 CD Ripper 2.8 contains a stack buffer overflow vulnerability that allows remote attackers to execute arbitrary code by crafting a malicious WAV file with oversized payload. Attackers can leverage a specially crafted exploit file with shellcode, SEH bypass, and egghunter technique to achieve remote code execution on vulnerable Windows systems.

EPSS

Процентиль: 33%
0.00133
Низкий

8.4 High

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-121

Связанные уязвимости

CVSS3: 9.8
nvd
10 дней назад

Free MP3 CD Ripper 2.8 contains a stack buffer overflow vulnerability that allows remote attackers to execute arbitrary code by crafting a malicious WAV file with oversized payload. Attackers can leverage a specially crafted exploit file with shellcode, SEH bypass, and egghunter technique to achieve remote code execution on vulnerable Windows systems.

EPSS

Процентиль: 33%
0.00133
Низкий

8.4 High

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-121