vendor:
FreeAmp
by:
C4SS!0 G0M3S
9.3
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: FreeAmp
Affected Version From: 2.0.7
Affected Version To: 2.0.7
Patch Exists: YES
Related CWE: N/A
CPE: a:freeamp:freeamp:2.0.7
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: WIN-XP SP3 Brazilian Portuguese
2011
FreeAmp 2.0.7 .PLS File Buffer Overflow Exploit
FreeAmp 2.0.7 is vulnerable to a buffer overflow vulnerability when processing specially crafted .PLS files. An attacker can exploit this vulnerability by creating a malicious .PLS file and convincing the user to open it, resulting in arbitrary code execution.
Mitigation:
Upgrade to the latest version of FreeAmp or apply the patch provided by the vendor.