Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-6288

Опубликовано: 04 дек. 2006
Источник: nvd
CVSS2: 4.6
EPSS Низкий

Описание

Multiple buffer overflows in Niek Albers CoolPlayer 216 and earlier allow remote attackers to execute arbitrary code via (1) a playlist file with long song names, because of an overflow in the CPL_AddPrefixedFile function in CPI_Playlist.c; (2) a skin file with long button names, because of an overflow in the main_skin_check_ini_value function in skin.c; and (3) a skin file with long bitmap filenames, because of an overflow in the main_skin_open function in skin.c.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:niek_albers:coolplayer:*:*:*:*:*:*:*:*
Версия до 216 (включая)

EPSS

Процентиль: 90%
0.06139
Низкий

4.6 Medium

CVSS2

Дефекты

CWE-119

Связанные уязвимости

github
больше 3 лет назад

Multiple buffer overflows in Niek Albers CoolPlayer 216 and earlier allow remote attackers to execute arbitrary code via (1) a playlist file with long song names, because of an overflow in the CPL_AddPrefixedFile function in CPI_Playlist.c; (2) a skin file with long button names, because of an overflow in the main_skin_check_ini_value function in skin.c; and (3) a skin file with long bitmap filenames, because of an overflow in the main_skin_open function in skin.c.

EPSS

Процентиль: 90%
0.06139
Низкий

4.6 Medium

CVSS2

Дефекты

CWE-119