9.3

CVE-2006-6261

Exploit
Buffer overflow in Quintessential Player 4.50.1.82 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted (1) M3u or (2) M3u-8 file; or a (3) crafted PLS file with a long value in the (a) NumberofEntries, (b) Length (aka Length1), (c) Filename (aka File1), (d) Title (aka Title1) field, or other unspecified fields.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Quinnware ≫ Quintessential Player Version <= 4.50.1.82
   Microsoft ≫ Windows 2000
   Microsoft ≫ Windows 95
   Microsoft ≫ Windows 98 Update gold
   Microsoft ≫ Windows Me
   Microsoft ≫ Windows Nt Version 4.0
   Microsoft ≫ Windows Xp
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 5.6% 0.92
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.securityfocus.com/bid/21331
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/30559
https://www.exploit-db.com/exploits/2860