References https://nvd.nist.gov/vuln/detail/CVE-2023-53875 https://www.exploit-db.com/exploits/51719 https://www.cvedetails.com/cve/CVE-2023-53875/ https://github.com/advisories/GHSA-67cj-g286-m6rp https://access.redhat.com/security/cve/cve-2023-53875 https://www.vulncheck.com/advisories/gom-player-remote-code-execution-via-insecure-ie-component https://cve.imfht.com/detail/CVE-2023-53875 https://www.nsfocus.net/vulndb/134686 https://cve.scap.org.cn/vulnerability/VHN-340942
Related Vulnerabilities(CVE-2023-53874)GOM Player均衡器预设名称输入字段缓冲区溢出漏洞PoCCVE-2013-7240: WordPress Plugin Advanced Dewplayer 1.2 - Directory TraversalPoCCVE-2015-4414: WordPress SE HTML5 Album Audio Player 1.1.0 - Directory TraversalPoCCVE-2019-9618: WordPress GraceMedia Media Player 1.0 - Local File InclusionPoCCVE-2021-39350: FV Flowplayer Video Player WordPress plugin - Authenticated Cross-Site ScriptingPoCCVE-2022-25216: DVDFab 12 Player/PlayerFab - Local File InclusionPoCCVE-2024-1061: WordPress HTML5 Video Player - SQL InjectionPoCCVE-2024-54385: Radio Player <= 2.0.82 - Server-Side Request ForgeryPoCCVE-2024-5522: WordPress HTML5 Video Player < 2.5.27 - SQL InjectionPoCCVE-2024-1061: WordPress HTML5 Video Player SQL注入PoClottie-backdoor: Lottie Player - BackdoorPoCwp-googlemp3-lfi: WordPress Plugin CodeArt Google MP3 Player - File Disclosure DownloadWordPress插件 HTML5 Video Player SQL注入漏洞(CVE-2024-5522)