9.3
CVE-2006-6261
- EPSS 5.6%
- Veröffentlicht 04.12.2006 11:28:00
- Zuletzt bearbeitet 16.06.2026 22:32:48
- Erkennungen
Buffer overflow in Quintessential Player 4.50.1.82 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted (1) M3u or (2) M3u-8 file; or a (3) crafted PLS file with a long value in the (a) NumberofEntries, (b) Length (aka Length1), (c) Filename (aka File1), (d) Title (aka Title1) field, or other unspecified fields.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Quinnware ≫ Quintessential Player Version <= 4.50.1.82
Microsoft ≫ Windows 2000
Microsoft ≫ Windows 95
Microsoft ≫ Windows 98 Update gold
Microsoft ≫ Windows Me
Microsoft ≫ Windows Nt Version 4.0
Microsoft ≫ Windows Xp
Microsoft ≫ Windows 95
Microsoft ≫ Windows 98 Update gold
Microsoft ≫ Windows Me
Microsoft ≫ Windows Nt Version 4.0
Microsoft ≫ Windows Xp
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 5.6% | 0.92 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|
http://www.securityfocus.com/bid/21331
https://exchange.xforce.ibmcloud.com/vulnerabilities/30559
https://www.exploit-db.com/exploits/2860