about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Worldweaver DX Studio Player Browser Plugin Remote Arbitrary Shell Command Injection Vulnerability


Title Worldweaver DX Studio Player Browser Plugin Remote Arbitrary Shell Command Injection Vulnerability
Published 2009-06-09-12:00AM
Updated 2009-09-09-08:41PM
Class Input Validation Error
CVE   CVE-2009-2011
Remote  Yes
Local  No
Credit  Diego Juarez from Core Security Technologies
Vulnerable  Worldweaver DX Studio Player 3.0.29 0
Worldweaver DX Studio Player 3.0.22 0
Worldweaver DX Studio Player 3.0.12 0
Not Vulnerable  Worldweaver DX Studio Player 3.0.29 1
Code  To exploit this issue, an attacker must entice an unsuspecting user into opening a malicious webpage.Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.The following proof-of-concept code is available:
  • /data/vulnerabilities/exploits/35273.txt
  • TXT  t3xt 1t!


    Advertising

    Copyright 2007, SecurityDot
    Wed, 02 Dec 2009 01:12:44 +0000

    Friends : milw0rm.com , secunia.com , securityfocus.com
    GOOGLE
    NEWS EXPLOITS VULNS
    exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
    sinhala se PHP guestb t740t cms is fre afriacanse sexvdioe passwords Crack Data pamela and hot sexy n www.pcbxy. passwords hot sexy n www.baidul www.wjq225 Arab sexy amember pr x-zhang.co www.fengdo Expolitas Geetha sex Sex\r\n mambo Remo saniamirza 1go.orgfre Www.phatas Bibasa news for C saniamirza GeekLog Me apache 2.2 xxx.videos ..._galle winzip pas winzip pas sexy photo Videosgrat sexy photo www.98.com ali dan na Www.sexghi www.shou6. +apache+2. CounterStr zhidao.hx2 www.hx225. free sex i www.sy225. t446t CMS is Fre