vendor:
Media Player Classic
by:
SYS 49152
7.5
CVSS
HIGH
Stack Overflow
CWE
Product Name: Media Player Classic
Affected Version From: 6.4.2009
Affected Version To: 5.0.1
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP SP2 ENG
Media Player Classic 6.4.9 MP4 Stack Overflow
The exploit is a stack overflow vulnerability in Media Player Classic 6.4.9. It allows an attacker to execute arbitrary code by providing a specially crafted MP4 file. The vulnerability was discovered and exploited by SYS 49152. It has been tested on Windows XP SP2 ENG and provides a shell on port 49152.
Mitigation:
Update to the latest version of Media Player Classic.