CVE-2017-2840
- EPSS 1.16%
- Veröffentlicht 24.04.2018 19:29:02
- Zuletzt bearbeitet 21.11.2024 03:24:15
A buffer overflow vulnerability exists in the ISO parsing functionality of EZB Systems UltraISO 9.6.6.3300. A specially crafted .ISO file can cause a vulnerability resulting in potential code execution. An attacker can provide a specific .ISO file to...
CVE-2010-5255
- EPSS 0.06%
- Veröffentlicht 07.09.2012 10:32:22
- Zuletzt bearbeitet 11.04.2025 00:51:21
Untrusted search path vulnerability in UltraISO 9.3.6.2750 allows local users to gain privileges via a Trojan horse daemon.dll file in the current working directory, as demonstrated by a directory that contains a .iso file. NOTE: some of these detai...
CVE-2009-1260
- EPSS 74.52%
- Veröffentlicht 07.04.2009 23:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple stack-based buffer overflows in UltraISO 9.3.3.2685 and earlier allow remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted (1) CCD or (2) IMG file.
CVE-2008-3871
- EPSS 0.9%
- Veröffentlicht 01.04.2009 18:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple format string vulnerabilities in UltraISO 9.3.1.2633, and possibly other versions before 9.3.3.2685, allow user-assisted attackers to execute arbitrary code via format string specifiers in the filename of a (1) DAA or (2) ISZ file.
CVE-2008-4825
- EPSS 1.53%
- Veröffentlicht 01.04.2009 18:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple buffer overflows in UltraISO 9.3.1.2633, and possibly other versions before 9.3.3.2685, allow user-assisted attackers to execute arbitrary code via a crafted (1) CIF, (2) C2D, or (3) GI file.