CVE-2011-5171

Cyberlink Power2go - Memory Corruption

Title source: rule

Description

Multiple stack-based buffer overflows in CyberLink Power2Go 7 (build 196) and 8 (build 1031) allow remote attackers to execute arbitrary code via the (1) src and (2) name parameters in a p2g project file.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Metasploit · rubylocalwindows
https://www.exploit-db.com/exploits/18747
exploitdb WORKING POC VERIFIED
by modpr0be · pythondoswindows
https://www.exploit-db.com/exploits/18220
metasploit WORKING POC GREAT
rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/fileformat/cyberlink_p2g_bof.rb

Scores

EPSS 0.6919
EPSS Percentile 98.7%

Details

CWE
CWE-119
Status published
Products (2)
cyberlink/power2go 7.0
cyberlink/power2go 8.0
Published Sep 15, 2012
Tracked Since Feb 18, 2026