|
RealPlayer and RealPlayer Enterprise contain a flaw related to the temporary file naming scheme used for reference storage in Real Media files. The filenames are easily predicted, which may be brute forced and used in combination with the 'OpenURLinPlayerBrowser()' function in 'classid:FDC7A535-4070-4B92-A0EA-D9994BCC0DC5' to execute the file, allowing a context-dependent attacker to execute arbitrary code.
|