Vulnerabilities > CVE-2007-1294 - Remote Denial of Service vulnerability in Divx web Player 1.3.0

047910
CVSS 7.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
COMPLETE
network
low complexity
divx
exploit available

Summary

A certain ActiveX control in the DivXBrowserPlugin (npdivx32.dll) in DivX Web Player, as distributed with DivX Player 1.3.0, allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via large values to DivxWP.Resize, related to resizing images.

Vulnerable Configurations

Part Description Count
Application
Divx
1

Exploit-Db

descriptionDivX Web Player 1.3.0 (npdivx32.dll) Remote Denial of Service Exploit. CVE-2007-1294. Dos exploit for windows platform
fileexploits/windows/dos/3392.html
idEDB-ID:3392
last seen2016-01-31
modified2007-03-01
platformwindows
port
published2007-03-01
reportershinnai
sourcehttps://www.exploit-db.com/download/3392/
titleDivX Web Player 1.3.0 npdivx32.dll Remote Denial of Service Exploit
typedos