exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

sightssounds.txt

sightssounds.txt
Posted Dec 14, 2005
Authored by Dr. Insane

Sights 'n Sounds Streaming Media Server version 2.0.3.a appears susceptible to a buffer overflow condition when passed a string greater than 1200 characters.

tags | advisory, overflow
SHA-256 | e25fc1743a397c3ec22c97ad11c8167b3f140c70604c0735cc4d804553649b57

sightssounds.txt

Change Mirror Download
Sights 'n Sounds Streaming Media Server 2.0.3.a Buffer overflow
----------------------------------------------------------

Download url:
http://www.download.com/Sights-n-Sounds-Streaming-Media-Server/3000-2168_4-10247732.html

Release Date:
10/12/2005

Severity:
high

Description:
"Sights 'n Sounds is a simple and fun to use Streaming Media Server. It allows anyone to stream music and
video files to all the computers in their house or over even stream content over the Internet. Sights 'n
Sounds also manages all your digital photographs. Pages are automatically created complete with thumbnails.
Access to your music, video, and pictures is through a standard Internet browser such as Netscape or IE. You
can even password protect your site so that only your friends and family can access it. All of your music,
video, and photographs are stored on your own computer so there are no special services to sign up for and no
site to send your files to. Sights 'n Sounds gives you the power that up till now has been reserved for the
audio/video professional but is simple enough to set up that even a computer novice will find it intuitive.
All you need to do is drag and drop your files in to the Sights 'n Sounds folder. That?s all there is to it!
Give it a try today. "

Vulnerability Analysis:
A buffer overflow vulnerability exists in the Sights 'n Sound built in Web server MediaServerListing.exe that may
allow a remote user to compromise a remote system by supplying as an argument to the mediaserverlisting.exe
a long string of 1200 characters.

example:
http://[host]/MediaServerListing.exe?[long_string]

This will crash the SWS.exe service.

credit:
dr_insane
Login or Register to add favorites

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close