← back
CVE-2013-7260

CVE-2013-7260

50Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 67%
from disclosure to weapon0 days
Published on NVDJan 3
1st PoCDec 24
metasploitDec 20
exploitation probability
67%top 1% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Multiple stack-based buffer overflows in RealNetworks RealPlayer before 17.0.4.61 on Windows, and Mac RealPlayer before 12.0.1.1738, allow remote attackers to execute arbitrary code via a long (1) version number or (2) encoding declaration in the XML declaration of an RMP file, a different issue than CVE-2013-6877.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.