module
Easy CD-DA Recorder PLS Buffer Overflow
Disclosed | Created |
---|---|
06/07/2010 | 05/30/2018 |
Disclosed
06/07/2010
Created
05/30/2018
Description
This module exploits a stack-based buffer overflow vulnerability in
Easy CD-DA Recorder 2007 caused by an overlong string in a playlist entry.
By persuading the victim to open a specially-crafted PLS file, a
remote attacker can execute arbitrary code on the system or cause
the application to crash. This module has been tested successfully on
Windows XP SP3 and Windows 7 SP1.
Easy CD-DA Recorder 2007 caused by an overlong string in a playlist entry.
By persuading the victim to open a specially-crafted PLS file, a
remote attacker can execute arbitrary code on the system or cause
the application to crash. This module has been tested successfully on
Windows XP SP3 and Windows 7 SP1.
Authors
chap0Gabor Seljanjuan vazquez
Platform
Windows
References
Module Options
To display the available options, load the module within the Metasploit console and run the commands ‘show options’ or ‘show advanced’:
msf > use exploit/windows/fileformat/easycdda_pls_bof msf /(f) > show actions ...actions... msf /(f) > set ACTION < action-name > msf /(f) > show options ...show and set options... msf /(f) > run

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.