CVE-2007-0348
Interactual Technologies Interactual Player - Memory Corruption
Title source: ruleDescription
Stack-based buffer overflow in the IASystemInfo.dll ActiveX control in (1) InterActual Player 2.60.12.0717, (2) Roxio CinePlayer 3.2, (3) WinDVD 7.0.27.172, and possibly other products, allows remote attackers to execute arbitrary code via a long ApplicationType property.
Exploits (2)
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16529
metasploit
WORKING POC
NORMAL
by MC · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/browser/windvd7_applicationtype.rb
References (12)
Scores
EPSS
0.7269
EPSS Percentile
98.8%
Details
CWE
CWE-119
Status
published
Products (3)
interactual_technologies/interactual_player
2.60.12.0717
intervideo/windvd
7.0.27.172
roxio/cineplayer
3.2
Published
Mar 21, 2007
Tracked Since
Feb 18, 2026