vendor:
ABBS Audio Media Player
by:
h1ch4m
9.3
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: ABBS Audio Media Player
Affected Version From: 3
Affected Version To: 3
Patch Exists: YES
Related CWE: N/A
CPE: //a:abbs:abbs_audio_media_player
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Win XP SP3 French
2011
ABBS Audio Media Player Buffer Overflow Exploit (SEH)
A buffer overflow vulnerability exists in ABBS Audio Media Player 3.0, which could allow an attacker to execute arbitrary code on the vulnerable system. The vulnerability is due to a boundary error when handling a specially crafted .lst file. An attacker can exploit this vulnerability to execute arbitrary code on the vulnerable system by enticing a user to open a specially crafted .lst file.
Mitigation:
Upgrade to the latest version of ABBS Audio Media Player.