NCTAudioFile2 ActiveX Buffer Overflow Exploit

This module exploits a vulnerability in the NCTAudioFile2.AudioFile ActiveX Control (NCTAudioFile2.dll) used by various multimedia applications. The exploit is triggered when a long string argument is processed by the SetFormatLikeSample() method resulting in a stack-based buffer overflow. This module runs a malicious web site on the CORE IMPACT Console and waits for an unsuspecting user to trigger the exploit by connecting to the web site.
Exploit type: 
Platform: 
Vulnerabilty ID: 
CVE-2007-0018
Product Version: 
6.2
Released Date: 
Tuesday, June 19, 2007 - 00:00