Unknown
CVE-2007-0018
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
Unknown
(0 users assessed)Unknown
(0 users assessed)Unknown
Unknown
Unknown
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
Stack-based buffer overflow in the NCTAudioFile2.AudioFile ActiveX control (NCTAudioFile2.dll), as used by multiple products, allows remote attackers to execute arbitrary code via a long argument to the SetFormatLikeSample function. NOTE: the products include (1) NCTsoft NCTAudioStudio, NCTAudioEditor, and NCTDialogicVoice; (2) Magic Audio Recorder, Music Editor, and Audio Converter; (3) Aurora Media Workshop; DB Audio Mixer And Editor; (4) J. Hepple Products including Fx Audio Editor and others; (5) EXPStudio Audio Editor; (6) iMesh; (7) Quikscribe; (8) RMBSoft AudioConvert and SoundEdit Pro 2.1; (9) CDBurnerXP; (10) Code-it Software Wave MP3 Editor and aBasic Editor; (11) Movavi VideoMessage, DVD to iPod, and others; (12) SoftDiv Software Dexster, iVideoMAX, and others; (13) Sienzo Digital Music Mentor (DMM); (14) MP3 Normalizer; (15) Roemer Software FREE and Easy Hi-Q Recorder, and Easy Hi-Q Converter; (16) Audio Edit Magic; (17) Joshua Video and Audio Converter; (18) Virtual CD; (19) Cheetah CD and DVD Burner; (20) Mystik Media AudioEdit Deluxe, Blaze Media, and others; (21) Power Audio Editor; (22) DanDans Digital Media Full Audio Converter, Music Editing Master, and others; (23) Xrlly Software Text to Speech Makerand Arial Sound Recorder / Audio Converter; (24) Absolute Sound Recorder, Video to Audio Converter, and MP3 Splitter; (25) Easy Ringtone Maker; (26) RecordNRip; (27) McFunSoft iPod Audio Studio, Audio Recorder for Free, and others; (28) MP3 WAV Converter; (29) BearShare 6.0.2.26789; and (30) Oracle Siebel SimBuilder and CRM 7.x.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
- altdo,
- americanshareware,
- audio edit magic,
- bearshare,
- cdburnerxp,
- cheetahburner,
- code-it softare,
- dandans digital media products,
- digital borneo,
- easy ringtone maker,
- expstudio,
- iaudiosoft.com,
- imesh.com,
- j hepple products,
- joshua mediasoft,
- magicvideosoftare,
- mcfunsoft,
- mediatox,
- movavi,
- mp3-soft,
- mystik media products,
- nctsoft products,
- nextlevel systems,
- quikscribe,
- recordnrip,
- rmbsoft,
- roemer software,
- sienzo,
- smart media systems,
- softdiv softare,
- virtual cd,
- xrlly software,
- xwaver.com
Products
- abasic editor 10.1,
- absolute mp3 splitter 2.5.4,
- absolute sound recorder 3.4.5,
- absolute video to audio converter 2.7.9,
- arial audio converter 2.3.40,
- arial sound recorder 1.4.3,
- audio convertor plus 2.2,
- audio edit magic 9.2.3 389,
- audio editor 4.0.2,
- audio editor 6.3.3 build 489,
- audio editor gold 9.2.5 build 424,
- audio mixer and editor 1.1.0,
- audio recorder for free 6.1,
- audio studio 6.6.3 build 479,
- audio studio gold 7.0.1.1 build 500,
- audioconvert 3.1.0.125,
- audioedit deluxe 4.10,
- aurora media workshop 3.3.25,
- bearshare 6.0.2.26789,
- blaze media pro 7.0,
- blaze mediaconvert 3.4,
- cdburnerxp pro 3.0.116,
- cheetah cd burner 3.56,
- cheetah dvd burner 1.79,
- chiliburner 2.3,
- contextconvert pro 3.1,
- convert mp3 master 1.1,
- convertmovie 4.4,
- dexster 3.0,
- digital music mentor 2.6.0.3,
- dvd to ipod 1.0,
- easy audio editor 7.4,
- easy hi-q converter 1.7,
- easy hi-q recorder 2.0,
- easy ringtone maker 2.0.5,
- free hi-q recorder 1.9,
- full audio converter 4.2,
- fx audio concat 1.2.0 beta,
- fx audio editor 4.7.11,
- fx audio tools 7.3.4,
- fx magic music 5.7.7,
- fx movie joiner 6.2.8,
- fx movie joiner and splitter 6.2.8,
- fx movie splitter 6.4.7,
- fx new sound 5.1.1,
- fx video converter 7.51.21,
- imesh 7.0.2.26789,
- ipod audio studio 6.2.4,
- ipod music converter 5.1,
- ivideomax 3.9,
- magic audio converter 8.2.6 build 719,
- magic audio editor pro 10.3.1 build 476,
- magic audio recorder 5.3.7,
- magic music editor 5.2.2,
- magic music studio pro 7.0.2.1 build 500,
- mp3 normalizer 1.03,
- mp3 record and edit audio master 1.2,
- mp3 to wav converter 3.0,
- mp3 wav converter 3.1.8,
- music editing master 5.2,
- nctaudioeditor 2.7.1,
- nctaudiofile2,
- nctaudiostudio 2.7.1,
- nctdialogicvoice 2.7.1,
- power audio editor 11.0.1,
- quikscribe player 5.022.05,
- quikscribe recorder 5.021.29,
- recording to ipod solution 5.1,
- recordnrip 1.0,
- snosh 1.4,
- soundedit pro 2.1,
- splitmovie 1.4,
- suite 3.5,
- text to speech maker 1.3.8,
- video converter plus 3.01,
- videomessage 1.0,
- videozilla 2.5,
- virtual cd 6.0.0.7,
- virtual cd 7.1.0.2,
- virtual cd 8.0.0.6,
- virtual cd file server 7.1.0.3,
- visual video converter 4.4,
- wave mp3 editor 10.1
References
Advisory
Miscellaneous
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: