CVE-2007-0949
iTinySoft Studio Total Video Player <1.03 - Buffer Overflow
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2007-0949. PoCs published by fl0 fl0w.
AI-analyzed exploit summary This exploit leverages a stack-based buffer overflow in Total Video Player V1.20 by crafting a malicious .m3u file. It overwrites EIP and ESP to execute shellcode, either spawning calc.exe or binding a shell.
Description
Stack-based buffer overflow in iTinySoft Studio Total Video Player 1.03, and possibly earlier, allows remote attackers to execute arbitrary code via a M3U playlist file that contains a long file name. NOTE: it was later reported that 1.20 and 1.30 are also affected.
Exploits (2)
This exploit leverages a stack-based buffer overflow in Total Video Player V1.20 by crafting a malicious .m3u file. It overwrites EIP and ESP to execute shellcode, either spawning calc.exe or binding a shell.
This exploit targets a local buffer overflow in Total Video Player V1.03 via a crafted .m3u file. It overwrites the SEH handler and EIP to execute shellcode, offering options to spawn calc.exe or bind a port.