Exploit DivX Player 2.6 - '.Skin' File Directory Traversal

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
25057
Проверка EDB
  1. Пройдено
Автор
LUIGI AURIEMMA
Тип уязвимости
REMOTE
Платформа
WINDOWS
CVE
N/A
Дата публикации
2005-01-21
Код:
source: https://www.securityfocus.com/bid/12332/info

DivX Player is reported prone to a directory traversal vulnerability. The issue presents itself when DPS '.dps', archive files are processed.

Ultimately an attacker may exploit this issue to save a script or executable file in an arbitrary location. This may lead to the execution of malicious code when the affected system is restarted. Alternatively, the attacker may overwrite a target file with the privileges of a user that is installing a malicious skin file. 

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/25057.dps
 
Источник
www.exploit-db.com

Похожие темы