VDB
CVE-2008-0959
CVE-2008-0959
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Multiple stack-based buffer overflows in the Online Media Technologies NCTSoft NCTAudioInformation2 ActiveX control in NCTAudioInformation2.dll, as used in (1) Power Audio CD Grabber 1.0, (2) Power Audio CD Burner 1.02, (3) CinematicMP3 1.4.0.0, (4) Alive MP3 WAV Converter 3.9.3.2, and possibly other products, allow remote attackers to execute arbitrary code via unspecified vectors.
EPSS 28.10% · 96.6th percentile
Risk Scores
CVSS 2.0
6.800000190734863
EPSS Score
28.10%
96.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | * |
| online_media_technologies | nctaudiostudio_activex_control | |
| orion_studios | cinematicmp3 | 1.4.0.0 |
| online_media_technologies | nctaudioeditor_activex_control | |
| alivemedia | alive_mp3_wav_converter | 3.9.3.2 |
| ussun | power_audio_cd_grabber | 1.0 |
| ussun | power_audio_cd_burner | 1.02 |
Timeline
- May 29, 2008 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
- Oct 30, 2023 EPSS Score
References
- 30395 third-party-advisory
- 30419 third-party-advisory
- nctaudiostudio-nctaudioinformation2-bo(42680) vdb
- VU#669265 third-party-advisory
- 30451 third-party-advisory
- ADV-2008-1669 vdb
- 30418 third-party-advisory
- 30454 third-party-advisory
- 30445 third-party-advisory
- 30421 third-party-advisory
- 30457 third-party-advisory
- 30453 third-party-advisory
- 30415 third-party-advisory
- 30458 third-party-advisory
- 30452 third-party-advisory
- 30456 third-party-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2008-0959 advisory