peter bassill · operator
$ cve CVE-2009-0184 JSON

CVE-2009-0184 EXPLOIT

9.3
HIGH · CVSS 2.0 · EPSS 27.8% (pctl 98)

Patch early

A public exploit exists.

Description

Multiple buffer overflows in the torrent parsing implementation in Free Download Manager (FDM) 2.5 Build 758 and 3.0 Build 844 allow remote attackers to execute arbitrary code via (1) a long file name within a torrent file, (2) a long tracker URL in a torrent file, or (3) a long comment in a torrent file.

Scoring

CVSS9.3 (HIGH, v2.0)
VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS27.8% — more likely to be exploited than 98% of all CVEs
WeaknessCWE-119
On CISA KEVno
Public exploityes
Published2009-02-03
Last modified2026-06-16

Affected (1)

VendorProduct
free download managerfree download manager

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD