vendor:
QuickTime
by:
Shahin (abysssec)
7.5
CVSS
HIGH
Remote Code Execution
CWE
Product Name: QuickTime
Affected Version From: QuickTime player 7.6.5
Affected Version To:
Patch Exists: NO
Related CWE: CVE-2010-0519
CPE: a:apple:quicktime
Platforms Tested:
2010
Apple QuickTime FlashPix NumberOfTiles Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on the target system.
Mitigation:
Update to a patched version of QuickTime player.