This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of software utilizing MiniShare. The UPS management software contains a built-in web server which allows for remote management of the UPS. The management interface is protected by a username and password and the authentication is performed via Basic authentication. There is a small stack-based overflow in the base64 decoding routine which handles the Basic authentication data. Authentication is not required to exploit this vulnerability.
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of software utilizing BadBlue. The vulnerability is caused due to a boundary error in ext.dll when processing an overly long PassThru command. This can be exploited to cause a stack-based buffer overflow via an overly long, specially-crafted argument passed to the affected command.
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of software utilizing AVID Media Composer. A remote user can send specially crafted data to TCP port 4659/4660 (AvidPhoneticIndexer.exe) to trigger a stack overflow and execute arbitrary code on the target system.