peter bassill · operator
$ cve CVE-2009-0323 JSON

CVE-2009-0323 EXPLOIT

10.0
HIGH · CVSS 2.0 · EPSS 62.5% (pctl 99)

Patch early

A public exploit exists.

Description

Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0 and 11.0 allow remote attackers to execute arbitrary code via (1) a long type parameter in an input tag, which is not properly handled by the EndOfXmlAttributeValue function; (2) an "HTML GI" in a start tag, which is not properly handled by the ProcessStartGI function; and unspecified vectors in (3) html2thot.c and (4) xml2thot.c, related to the msgBuffer variable. NOTE: these are different vectors than CVE-2008-6005.

Scoring

CVSS10.0 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS62.49% — more likely to be exploited than 99% of all CVEs
WeaknessCWE-119
On CISA KEVno
Public exploityes
Published2009-01-28
Last modified2026-06-16

Affected (1)

VendorProduct
w3amaya

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD