CVE-2005-2936
Last modified
CVE-2005-2936 is a vulnerability of currently unknown severity. Unquoted Windows search path vulnerability in RealNetworks RealPlayer 10.5 6.0.12.1040 through 6.0.12.1348, RealPlayer 10, RealOne Player v2, RealOne Player v1, and RealPlayer 8 before 20060322 might allow local users to gain privileges via a malicious C:\program.exe file.. EPSS estimates a 3.34% chance of exploitation in the next 30 days.
Description
Unquoted Windows search path vulnerability in RealNetworks RealPlayer 10.5 6.0.12.1040 through 6.0.12.1348, RealPlayer 10, RealOne Player v2, RealOne Player v1, and RealPlayer 8 before 20060322 might allow local users to gain privileges via a malicious C:\program.exe file.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Realnetworks | Realone Player | 1.0 |
| Realnetworks | Realone Player | 2.0 |
| Realnetworks | Realplayer | 8.0 |
| Realnetworks | Realplayer | 10.0 |
| Realnetworks | Realplayer | 10.5_6.0.12.1040 |
| Realnetworks | Realplayer | 10.5_6.0.12.1348 |
References
- http://secunia.com/advisories/19358Vendor Advisory
- http://www.vupen.com/english/advisories/2006/1057Vendor Advisory
- http://secunia.com/advisories/19358Vendor Advisory
- http://www.vupen.com/english/advisories/2006/1057Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-2936?
How severe is CVE-2005-2936?
How do I fix CVE-2005-2936?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2005
- CVE-2005-2930Stack-based buffer overflow in the _chm_find_in_PMGL functio…
- CVE-2005-2931Format string vulnerability in the SMTP service in IMail Ser…
- CVE-2005-2932Multiple Check Point Zone Labs ZoneAlarm products before 7.0…
- CVE-2005-2933Buffer overflow in the mail_valid_net_parse_work function in…
- CVE-2005-2934Unspecified vulnerability in ptrace in SCO UnixWare 7.1.3 an…
- CVE-2005-2935Unquoted Windows search path vulnerability in Microsoft Anti…
- CVE-2005-2937Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2005-2938Unquoted Windows search path vulnerability in iTunesHelper.e…
- CVE-2005-2939Unquoted Windows search path vulnerability in VMWare Worksta…
- CVE-2005-2940Unquoted Windows search path vulnerability in Microsoft Anti…
- CVE-2005-2942Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2005-2943Stack-based buffer overflow in sendmail in XMail before 1.22…
Are you affected by CVE-2005-2936?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
