Vulnerabilities
Vulnerable Software
Baofeng:  >> Storm  >> 2.7.9_10  Security Vulnerabilities
Unspecified vulnerability in Config.dll in Baofeng products 3.09.04.17 and earlier allows remote attackers to execute arbitrary code by calling the SetAttributeValue method, as exploited in the wild in April and May 2009.
CVSS Score
9.3
EPSS Score
0.035
Published
2009-05-28
Stack-based buffer overflow in the MPS.StormPlayer.1 ActiveX control in mps.dll 3.9.4.27 in Baofeng Storm allows remote attackers to execute arbitrary code via a long argument to the OnBeforeVideoDownload method, as exploited in the wild in April and May 2009. NOTE: some of these details are obtained from third party information. NOTE: it was later reported that 3.09.04.17 and earlier are also affected.
CVSS Score
9.3
EPSS Score
0.689
Published
2009-05-11


Contact Us

Shodan ® - All rights reserved