vendor:
MoviePlay
by:
sickness
9.3
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: MoviePlay
Affected Version From: 4.82
Affected Version To: 4.82
Patch Exists: YES
Related CWE: N/A
CPE: a:movieplay:movieplay:4.82
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP Professional SP3 (EN)
2011
MoviePlay 4.82 (.lst) Buffer Overflow
MoviePlay 4.82 is vulnerable to a buffer overflow vulnerability when a specially crafted .lst file is opened. This can be exploited to execute arbitrary code by corrupting the stack. The exploit code is written in Python and it contains a payload that executes calc.exe when the vulnerable application is opened.
Mitigation:
Upgrade to the latest version of MoviePlay 4.82 or apply the patch provided by the vendor.