about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Worldweaver DX Studio Player Browser Plugin Remote Arbitrary Shell Command Injection Vulnerability


Title Worldweaver DX Studio Player Browser Plugin Remote Arbitrary Shell Command Injection Vulnerability
Published 2009-06-09-12:00AM
Updated 2009-09-09-08:41PM
Class Input Validation Error
CVE   CVE-2009-2011
Remote  Yes
Local  No
Credit  Diego Juarez from Core Security Technologies
Vulnerable  Worldweaver DX Studio Player 3.0.29 0
Worldweaver DX Studio Player 3.0.22 0
Worldweaver DX Studio Player 3.0.12 0
Not Vulnerable  Worldweaver DX Studio Player 3.0.29 1
Code  To exploit this issue, an attacker must entice an unsuspecting user into opening a malicious webpage.Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.The following proof-of-concept code is available:
  • /data/vulnerabilities/exploits/35273.txt
  • TXT  t3xt 1t!


    Advertising

    Copyright 2007, SecurityDot
    Fri, 11 Dec 2009 21:45:00 +0000

    Friends : milw0rm.com , secunia.com , securityfocus.com
    GOOGLE
    NEWS EXPLOITS VULNS
    exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
    Saniamirza _OScommer /index.php wwwpusy.co Wapwoman s 8534.kgkg. Wap4sex.Co Win98 sexseen padmanaray Samira sex all cartoo www.26se.i www.lujiay Aaru nakedactre red hat 9. chainessex Girls lolita.com linux kern www.sexne Crack Data php-nuke 2 Fantastik lesbian ki hayfa Sabana porn vidio www.otonan news for c GET /galle VirtueMart STORE MOD www.zapatu www.80xion Videos of Www.sexy.c include%2F sexy girls www. pinkw billy muir G...=http: www.fuckgi %252Fashne SSH_scan /zipndownl sakila sex mom and so news for c