CVE-2009-4659

MP3-Cutter Ease Audio Cutter <1.20 - DoS

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2009-4659. PoCs published by zAx.

AI-analyzed exploit summary This exploit generates a malformed .wav file with an oversized buffer (15000 bytes) to trigger a local crash in Ease Audio Cutter 1.20. The PoC demonstrates a denial-of-service (DoS) condition when the file is loaded and played.

Description

Unspecified vulnerability in MP3-Cutter Ease Audio Cutter 1.20 allows user-assisted remote attackers to cause a denial of service (application crash) via a long string in a WAV file.

Exploits (1)

exploitdb WORKING POC VERIFIED
by zAx · perldoswindows
https://www.exploit-db.com/exploits/9707

This exploit generates a malformed .wav file with an oversized buffer (15000 bytes) to trigger a local crash in Ease Audio Cutter 1.20. The PoC demonstrates a denial-of-service (DoS) condition when the file is loaded and played.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Ease Audio Cutter 1.20
No auth needed
Prerequisites: Local access to the target system · Ease Audio Cutter 1.20 installed
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/53333
Exploit, Third Party Advisory exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/9707

Scores

EPSS 0.0187
EPSS Percentile 76.5%

Details

Status published
Products (1)
mp3-cutter/ease_audio_cutter 1.20
Published Mar 03, 2010
Tracked Since Feb 18, 2026