7.5

CVE-2002-1014

Buffer overflow in RealJukebox 2 1.0.2.340 and 1.0.2.379, and RealOne Player Gold 6.0.10.505, allows remote attackers to execute arbitrary code via an RFS skin file whose skin.ini contains a long value in a CONTROLnImage argument, such as CONTROL1Image.

Data is provided by the National Vulnerability Database (NVD)
RealnetworksRealjukebox 2 Version1.0.2.340
RealnetworksRealjukebox 2 Version1.0.2.379
RealnetworksRealjukebox 2 Plus Version1.0.2.340
RealnetworksRealjukebox 2 Plus Version1.0.2.379
RealnetworksRealone Player Version6.0.10.505 Updategold
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 17.02% 0.947
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P