CVE-2018-19357
HIGHXMPlay 3.8.3 - Remote Code Execution via Crafted HTTP URL in M3U File
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2018-19357. PoCs published by s7acktrac3.
AI-analyzed exploit summary This exploit leverages a buffer overflow in XMPlay 3.8.3 via a maliciously crafted .m3u file to achieve remote code execution, specifically launching calc.exe. It uses an egghunter technique to locate and execute the payload in memory.
Description
XMPlay 3.8.3 allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer overflow) via a crafted http:// URL in a .m3u file.
Exploits (1)
This exploit leverages a buffer overflow in XMPlay 3.8.3 via a maliciously crafted .m3u file to achieve remote code execution, specifically launching calc.exe. It uses an egghunter technique to locate and execute the payload in memory.
References (1)
Scores
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H