Vulnerability CVE-2017-17932


Published: 2017-12-28

Description:
A buffer overflow vulnerability exists in MediaServer.exe in ALLPlayer ALLMediaServer 0.95 and earlier that could allow remote attackers to execute arbitrary code and/or cause denial of service on the victim machine/computer via a long string to TCP port 888.

Type:

CWE-119

(Improper Restriction of Operations within the Bounds of a Memory Buffer)

Vendor: Allmediaserver
Product: Allmediaserver 
Version: 0.95;

CVSS2 => (AV:N/AC:L/Au:N/C:C/I:C/A:C)

CVSS Base Score
Impact Subscore
Exploitability Subscore
10/10
10/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Complete
Complete
Complete

 References:
https://www.exploit-db.com/exploits/43406/
https://www.exploit-db.com/exploits/43407/
https://www.exploit-db.com/exploits/43523/

Copyright 2018, cxsecurity.com

 

Back to Top