header-logo
Suggest Exploit
vendor:
RealArcade
by:
SecurityFocus
7.5
CVSS
HIGH
Arbitrary File Deletion and Integer Overflow
119, 190
CWE
Product Name: RealArcade
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: Yes
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2005

Multiple Remote Vulnerabilities in RealNetworks RealArcade

Multiple remote vulnerabilities reportedly affect RealNetworks RealArcade. The first issue allows for arbitrary file deletion due to an input validation issue. The second issue is an integer overflow issue resulting in code execution. Both of these issues require an unsuspecting user to download and activate a malicious file for exploitation. Successful exploitation of these issues will facilitate code execution and file deletion with the privileges of an unsuspecting user that activates a malicious RealArcade file.

Mitigation:

Ensure that all users are running the latest version of RealNetworks RealArcade and that all files are obtained from trusted sources.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/12494/info

Multiple remote vulnerabilities reportedly affect RealNetworks RealArcade. The first issue allows for arbitrary file deletion due to an input validation issue. The second issue is an integer overflow issue resulting in code execution.

Both of these issues require an unsuspecting user to download and activate a malicious file for exploitation.

Successful exploitation of these issues will facilitate code execution and file deletion with the privileges of an unsuspecting user that activates a malicious RealArcade file. 

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/25091-1.rgp

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/25091-2.rgs