← Back

CVE-2009-2970

nvd nist
Published: Oct 19, 2009Modified: Apr 23, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Stack-based buffer overflow in the GetUiDllVersion function in an ActiveX control in UiCheck.dll before 1.0.0.7 in UiTV UiPlayer, as used in BaiduX and other products, allows remote attackers to execute arbitrary code via the filename parameter.

Affected (2)

Products: Uitv: Uiplayer · Baidu: Baidux
1 product
Uiplayer
1 product
Baidux
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
All versions
All versions

References (4)

Timeline

No history available yet.