Описание
Stack-based buffer overflow in DAP.exe in Download Accelerator Plus (DAP) 7.0.1.3, 8.6.6.3, and other 8.x versions allows user-assisted remote attackers to execute arbitrary code via an M3U (.m3u) file containing a long MP3 URL.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:speedbit:download_accelerator_plus:7.0.1.3:*:*:*:*:*:*:*
cpe:2.3:a:speedbit:download_accelerator_plus:8:*:*:*:*:*:*:*
cpe:2.3:a:speedbit:download_accelerator_plus:8.6.6.3:*:*:*:*:*:*:*
EPSS
Процентиль: 96%
0.28079
Средний
9.3 Critical
CVSS2
Дефекты
CWE-119
Связанные уязвимости
github
почти 4 года назад
Stack-based buffer overflow in DAP.exe in Download Accelerator Plus (DAP) 7.0.1.3, 8.6.6.3, and other 8.x versions allows user-assisted remote attackers to execute arbitrary code via an M3U (.m3u) file containing a long MP3 URL.
EPSS
Процентиль: 96%
0.28079
Средний
9.3 Critical
CVSS2
Дефекты
CWE-119