Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-2175

Опубликовано: 24 апр. 2007
Источник: nvd
CVSS2: 7.6
EPSS Высокий

Описание

Apple QuickTime Java extensions (QTJava.dll), as used in Safari and other browsers, and when Java is enabled, allows remote attackers to execute arbitrary code via parameters to the toQTPointer method in quicktime.util.QTHandleRef, which can be used to modify arbitrary memory when creating QTPointerRef objects, as demonstrated during the "PWN 2 0WN" contest at CanSecWest 2007.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*

EPSS

Процентиль: 99%
0.85142
Высокий

7.6 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

Apple QuickTime Java extensions (QTJava.dll), as used in Safari and other browsers, and when Java is enabled, allows remote attackers to execute arbitrary code via parameters to the toQTPointer method in quicktime.util.QTHandleRef, which can be used to modify arbitrary memory when creating QTPointerRef objects, as demonstrated during the "PWN 2 0WN" contest at CanSecWest 2007.

EPSS

Процентиль: 99%
0.85142
Высокий

7.6 High

CVSS2

Дефекты

NVD-CWE-Other