VYPR

Phobos.Playlist COM object

by AOL

CVEs (1)

  • CVE-2010-10015HigAug 21, 2025
    risk 0.58cvss epss 0.01

    AOL versions up to and including 9.5 includes an ActiveX control (Phobos.dll) that exposes a method called Import() via the Phobos.Playlist COM object. This method is vulnerable to a stack-based buffer overflow when provided with an excessively long string argument. Exploitation…