GOM Player是在南韩广泛使用的媒体播放器。 GOM Player在播放多媒体文件时支持显示字幕。具体来说,在处理过程中GOM Player使用srt2smi.exe模块将srt转换为smi格式,但这个模块没有正确地执行边界检查。如果用户受骗加载了包含有超长字符串的特制srt文件就可能触发栈溢出,导致执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2008-6784 | Scripts-For-Sites EZ Adult目录'directory.php' SQL注入漏洞 | |
| CVE-2009-1499 | Joomla! 'com_mailto' 组件 'index.php' SQL注入漏洞 | |
| CVE-2009-1498 | Internet Discussion Boards inc/profilemain.php' 本地文件目录遍历漏洞 | |
| CVE-2009-1496 | Ijobid cmimarketplace Component 'index.php' 目录遍历漏洞 | |
| CVE-2009-1495 | Web File Explorer 'data/db.mdb'权限许可和访问控制漏洞 | |
| CVE-2008-6775 | HTC Touch Pro和Touch Cruise vCard 拒绝服务攻击漏洞 | |
| CVE-2009-1507 | Drupal Node Access User Reference模块安全绕过漏洞 | |
| CVE-2009-1506 | Intelliants eLitius 'classes/Xp.phpp' SQL注入漏洞 | |
| CVE-2009-1505 | Drupal News Page模块SQL注入漏洞 | |
| CVE-2009-1504 | Xigla Absolute Form Processor XE 'xlaAFPadmin'cookie身份认证绕过漏洞 | |
| CVE-2009-1503 | Tiger DMS Login SQL注入漏洞 | |
| CVE-2009-1502 | Matteoiammarrone S-CMS 'plugin.php'目录遍历漏洞 | |
| CVE-2009-1501 | Exif Drupal Module 跨站脚本攻击漏洞 | |
| CVE-2009-1500 | ProjectCMS 'index.php'SQL注入漏洞 | |
| CVE-2009-1365 | Adobe Flash Media Server 未明漏洞 | |
| CVE-2009-1364 | libwmf库WMF图形文件解析远程代码执行漏洞 | |
| CVE-2009-1512 | X-Forum 'SaveConfig.php' SQL注入漏洞 | |
| CVE-2008-6783 | Scripts-For-Sites Home Business目录'directory.php' SQL注入漏洞 | |
| CVE-2008-6782 | Scripts-For-Sites Hosting Directory 'directory.php' SQL注入漏洞 | |
| CVE-2008-6781 | Scripts-For-Sites Gaming Directory 'directory.php' SQL注入漏洞 |
Showing top 20 of 33 CVEs. View all on vendor page → →
No comments yet