9.8

CVE-2015-8271

Exploit
The AMF3CD_AddProp function in amf.c in RTMPDump 2.4 allows remote RTMP Media servers to execute arbitrary code.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Rtmpdump ProjectRtmpdump Version2.4
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 5.92% 0.923
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
CWE-123 Write-what-where Condition

Any condition where the attacker has the ability to write an arbitrary value to an arbitrary location, often as the result of a buffer overflow.

http://www.debian.org/security/2017/dsa-3850
http://www.securityfocus.com/bid/95125
Third Party Advisory
VDB Entry
http://www.talosintelligence.com/reports/TALOS-2016-0067/
Third Party Advisory
Exploit
VDB Entry
Technical Description