Vulnerabilities > Ezbsystems

DATE CVE VULNERABILITY TITLE RISK
2018-04-24 CVE-2017-2840 Classic Buffer Overflow vulnerability in Ezbsystems Ultraiso 9.6.6.3300
A buffer overflow vulnerability exists in the ISO parsing functionality of EZB Systems UltraISO 9.6.6.3300.
6.8
2012-09-07 CVE-2010-5255 Unspecified vulnerability in Ezbsystems Ultraiso 9.3.6.2750
Untrusted search path vulnerability in UltraISO 9.3.6.2750 allows local users to gain privileges via a Trojan horse daemon.dll file in the current working directory, as demonstrated by a directory that contains a .iso file.
local
ezbsystems
6.9
2009-04-07 CVE-2009-1260 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Ezbsystems Ultraiso
Multiple stack-based buffer overflows in UltraISO 9.3.3.2685 and earlier allow remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted (1) CCD or (2) IMG file.
network
ezbsystems CWE-119
critical
9.3
2009-04-01 CVE-2008-4825 Buffer Errors vulnerability in Ezbsystems Ultraiso 9.3.1.2633
Multiple buffer overflows in UltraISO 9.3.1.2633, and possibly other versions before 9.3.3.2685, allow user-assisted attackers to execute arbitrary code via a crafted (1) CIF, (2) C2D, or (3) GI file.
network
ezbsystems CWE-119
critical
9.3
2009-04-01 CVE-2008-3871 USE of Externally-Controlled Format String vulnerability in Ezbsystems Ultraiso 9.3.1.2633
Multiple format string vulnerabilities in UltraISO 9.3.1.2633, and possibly other versions before 9.3.3.2685, allow user-assisted attackers to execute arbitrary code via format string specifiers in the filename of a (1) DAA or (2) ISZ file.
network
ezbsystems CWE-134
critical
9.3