kmplayer records
5 published records for vendor kmplayer.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-190 Integer Overflow or Wraparound1
- CWE-20 Improper Input Validation1
- CWE-787 Out-of-bounds Write1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
38Monitor | CVE-2011-2594No exploit | Heap-based buffer overflow in KMPlayer 3.0.0.1441, and possibly other versions, allows remote attackers to execute arbitrary code via a playkmplayer · kmplayer · CWE-119 | Critical9.3 | — | 4.0% | Sep 2, 2011 |
38Monitor | CVE-2012-3841No exploit | Untrusted search path vulnerability in KMPlayer 3.2.0.19 allows local users to execute arbitrary code and conduct DLL hijacking attacks via kmplayer · kmplayer | Critical9.3 | — | 3.3% | Jul 3, 2012 |
31Monitor | CVE-2019-17259No exploit | KMPlayer 4.2.2.31 allows a User Mode Write AV starting at utils!src_new+0x000000000014d6ee.kmplayer · kmplayer · CWE-787 | High7.8 | — | 0.5% | Oct 8, 2019 |
23Monitor | CVE-2017-16952Proof of concept | KMPlayer 4.2.2.4 allows remote attackers to cause a denial of service via a crafted NSV file.kmplayer · kmplayer · CWE-20 | Medium5.5 | — | 3.2% | Nov 28, 2017 |
23Monitor | CVE-2019-9133No exploit | KMPlayer Subtitles parser Heap Overflow Vulnerabilitykmplayer · kmplayer · CWE-190 | Medium5.5 | — | 1.9% | Apr 9, 2019 |
- CVE-2011-259438Monitor
Heap-based buffer overflow in KMPlayer 3.0.0.1441, and possibly other versions, allows remote attackers to execute arbitrary code via a play
CriticalCVSS 9.3No exploitEPSS 4%kmplayer · kmplayerSep 2, 2011
- CVE-2012-384138Monitor
Untrusted search path vulnerability in KMPlayer 3.2.0.19 allows local users to execute arbitrary code and conduct DLL hijacking attacks via
CriticalCVSS 9.3No exploitEPSS 3%kmplayer · kmplayerJul 3, 2012
- CVE-2019-1725931Monitor
KMPlayer 4.2.2.31 allows a User Mode Write AV starting at utils!src_new+0x000000000014d6ee.
HighCVSS 7.8No exploitEPSS 0%kmplayer · kmplayerOct 8, 2019
- CVE-2017-1695223Monitor
KMPlayer 4.2.2.4 allows remote attackers to cause a denial of service via a crafted NSV file.
MediumCVSS 5.5Proof of conceptEPSS 3%kmplayer · kmplayerNov 28, 2017
- CVE-2019-913323Monitor
KMPlayer Subtitles parser Heap Overflow Vulnerability
MediumCVSS 5.5No exploitEPSS 2%kmplayer · kmplayerApr 9, 2019