Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-4599

Опубликовано: 31 окт. 2007
Источник: nvd
CVSS2: 9.3
EPSS Средний

Описание

Stack-based buffer overflow in RealNetworks RealPlayer 10 and possibly 10.5, and RealOne Player 1 and 2, for Windows allows remote attackers to execute arbitrary code via a crafted playlist (PLS) file.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:realnetworks:realone_player:1.0:*:windows:en:*:*:*:*
cpe:2.3:a:realnetworks:realone_player:2.0:*:windows:*:*:*:*:*
cpe:2.3:a:realnetworks:realplayer:10.0:*:windows:*:*:*:*:*
cpe:2.3:a:realnetworks:realplayer:10.5:6.0.12.1040:windows:*:*:*:*:*
cpe:2.3:a:realnetworks:realplayer:10.5:6.0.12.1578:windows:*:*:*:*:*
cpe:2.3:a:realnetworks:realplayer:10.5:6.0.12.1698:windows:*:*:*:*:*
cpe:2.3:a:realnetworks:realplayer:10.5:6.0.12.1741:windows:*:*:*:*:*

EPSS

Процентиль: 94%
0.13061
Средний

9.3 Critical

CVSS2

Дефекты

CWE-119

Связанные уязвимости

github
почти 4 года назад

Stack-based buffer overflow in RealNetworks RealPlayer 10 and possibly 10.5, and RealOne Player 1 and 2, for Windows allows remote attackers to execute arbitrary code via a crafted playlist (PLS) file.

EPSS

Процентиль: 94%
0.13061
Средний

9.3 Critical

CVSS2

Дефекты

CWE-119