roxio records
11 published records for vendor roxio.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 3 · 27.3%
- Pre-auth RCE
- 7
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer4
- CWE-189 Numeric Errors1
- CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
11 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
48Plan | CVE-2007-0348Weaponized | Stack-based buffer overflow in the IASystemInfo.dll ActiveX control in (1) InterActual Player 2.60.12.0717, (2) Roxio CinePlayer 3.2, (3) Wiroxio · cineplayer · CWE-119 | Critical9.3 | — | 35.1% | Mar 21, 2007 |
47Plan | CVE-2007-1559Weaponized | Multiple stack-based buffer overflows in SonicDVDDashVRNav.dll in Roxio CinePlayer 3.2 allow remote attackers to execute arbitrary code via roxio · cineplayer | Critical9.3 | — | 31.8% | Apr 11, 2007 |
46Plan | CVE-2008-4384Weaponized | Multiple stack-based buffer overflows in MGI Software LPViewer ActiveX control (LPControl.dll), as acquired by Roxio and iseemedia, allow reiseemedia · lpviewer · CWE-119 | Critical9.3 | — | 28.7% | Oct 7, 2008 |
39Monitor | CVE-2007-3829No exploit | Multiple stack-based buffer overflows in (a) InterActual Player 2.60.12.0717 and (b) Roxio CinePlayer 3.2 allow remote attackers to execute roxio · cineplayer | Critical9.3 | — | 8.2% | Jul 17, 2007 |
39Monitor | CVE-2009-4840Proof of concept | Heap-based buffer overflow in the IAManager ActiveX control in IAManager.dll in Roxio CinePlayer 3.2 allows remote attackers to execute arbiroxio · cineplayer · CWE-119 | Critical9.3 | — | 8.0% | May 6, 2010 |
39Monitor | CVE-2009-4841Proof of concept | Heap-based buffer overflow in the SonicMediaPlayer ActiveX control in SonicMediaPlayer.dll in Roxio CinePlayer 3.2 allows remote attackers troxio · cineplayer · CWE-119 | Critical9.3 | — | 7.3% | May 6, 2010 |
39Monitor | CVE-2009-1566No exploit | Integer overflow in Roxio Easy Media Creator 9.0.136, and Roxio Creator 2010 before SP1, might allow remote attackers to execute arbitrary croxio · creator · CWE-189 | Critical9.3 | — | 6.7% | Dec 3, 2009 |
27Monitor | CVE-2010-5236Proof of concept | Untrusted search path vulnerability in Roxio Easy Media Creator Home 9.0.136 allows local users to gain privileges via a Trojan horse homeutroxio · easy media creator | Medium6.9 | — | 1.0% | Sep 7, 2012 |
27Monitor | CVE-2010-5195Proof of concept | Untrusted search path vulnerability in Roxio MyDVD 9 allows local users to gain privileges via a Trojan horse HomeUtils9.dll file in the curroxio · mydvd | Medium6.9 | — | 0.9% | Sep 6, 2012 |
24Monitor | CVE-2006-4801No exploit | Race condition in Deja Vu, as used in Roxio Toast Titanium 7 and possibly other products, allows local users to execute arbitrary code via troxio · toast · CWE-362 | Medium6.2 | — | 0.4% | Sep 14, 2006 |
18Monitor | CVE-2004-1398No exploit | Format string vulnerability in prelink.c in kextload in Apple OS X, as used by TDIXSupport in Roxio Toast Titanium and possibly other producroxio · toast | Medium4.6 | — | 0.4% | Dec 31, 2004 |
- CVE-2007-034848Plan
Stack-based buffer overflow in the IASystemInfo.dll ActiveX control in (1) InterActual Player 2.60.12.0717, (2) Roxio CinePlayer 3.2, (3) Wi
CriticalCVSS 9.3WeaponizedEPSS 35%roxio · cineplayerMar 21, 2007
- CVE-2007-155947Plan
Multiple stack-based buffer overflows in SonicDVDDashVRNav.dll in Roxio CinePlayer 3.2 allow remote attackers to execute arbitrary code via
CriticalCVSS 9.3WeaponizedEPSS 32%roxio · cineplayerApr 11, 2007
- CVE-2008-438446Plan
Multiple stack-based buffer overflows in MGI Software LPViewer ActiveX control (LPControl.dll), as acquired by Roxio and iseemedia, allow re
CriticalCVSS 9.3WeaponizedEPSS 29%iseemedia · lpviewerOct 7, 2008
- CVE-2007-382939Monitor
Multiple stack-based buffer overflows in (a) InterActual Player 2.60.12.0717 and (b) Roxio CinePlayer 3.2 allow remote attackers to execute
CriticalCVSS 9.3No exploitEPSS 8%roxio · cineplayerJul 17, 2007
- CVE-2009-484039Monitor
Heap-based buffer overflow in the IAManager ActiveX control in IAManager.dll in Roxio CinePlayer 3.2 allows remote attackers to execute arbi
CriticalCVSS 9.3Proof of conceptEPSS 8%roxio · cineplayerMay 6, 2010
- CVE-2009-484139Monitor
Heap-based buffer overflow in the SonicMediaPlayer ActiveX control in SonicMediaPlayer.dll in Roxio CinePlayer 3.2 allows remote attackers t
CriticalCVSS 9.3Proof of conceptEPSS 7%roxio · cineplayerMay 6, 2010
- CVE-2009-156639Monitor
Integer overflow in Roxio Easy Media Creator 9.0.136, and Roxio Creator 2010 before SP1, might allow remote attackers to execute arbitrary c
CriticalCVSS 9.3No exploitEPSS 7%roxio · creatorDec 3, 2009
- CVE-2010-523627Monitor
Untrusted search path vulnerability in Roxio Easy Media Creator Home 9.0.136 allows local users to gain privileges via a Trojan horse homeut
MediumCVSS 6.9Proof of conceptEPSS 1%roxio · easy media creatorSep 7, 2012
- CVE-2010-519527Monitor
Untrusted search path vulnerability in Roxio MyDVD 9 allows local users to gain privileges via a Trojan horse HomeUtils9.dll file in the cur
MediumCVSS 6.9Proof of conceptEPSS 1%roxio · mydvdSep 6, 2012
- CVE-2006-480124Monitor
Race condition in Deja Vu, as used in Roxio Toast Titanium 7 and possibly other products, allows local users to execute arbitrary code via t
MediumCVSS 6.2No exploitEPSS 0%roxio · toastSep 14, 2006
- CVE-2004-139818Monitor
Format string vulnerability in prelink.c in kextload in Apple OS X, as used by TDIXSupport in Roxio Toast Titanium and possibly other produc
MediumCVSS 4.6No exploitEPSS 0%roxio · toastDec 31, 2004