vendor:
PlayMeNow
by:
Blake
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: PlayMeNow
Affected Version From: 7.3
Affected Version To: 7.4
Patch Exists: YES
Related CWE:
CPE:
Platforms Tested: Windows XP SP3 - English
PlayMeNow versions 7.3 and 7.4 Buffer Overflow Exploit (SEH)
This module exploits a stack overflow in PlayMeNow version 7.3 and 7.4. By creating a specially crafted m3u or pls file, an attacker may be able to execute arbitrary code.
Mitigation:
Apply the latest patch for PlayMeNow version 7.4 or higher.