vendor:
Digital Music Mentor
by:
shinnai
7.5
CVSS
HIGH
Stack-based buffer overflow
120
CWE
Product Name: Digital Music Mentor
Affected Version From: 2.6.0.4
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE: a:sienzo:digital_music_mentor:2.6.0.4
Platforms Tested: Windows XP Professional SP2
2007
Sienzo Digital Music Mentor Stack-based Buffer Overflow Vulnerabilities
Sienzo Digital Music Mentor is prone to multiple stack-based buffer-overflow vulnerabilities because the software fails to adequately check boundaries on data supplied to multiple ActiveX control methods. An attacker can exploit this issue to execute arbitrary code in the context of a user running the application. Failed attempts will likely result in denial-of-service conditions.
Mitigation:
No official patch or mitigation is available for this vulnerability.