---
id: CVE-2021-47785
title: Ether_MP3_CD_Burner 1.3.8 - Buffer Overflow (SEH)
summary: >-
  Ether MP3 CD Burner 1.3.8 contains a buffer overflow vulnerability in the
  registration name field that allows remote code execution. Attackers can craft
  a malicious payload to overwrite SEH handlers and execute a bind shell on port
  3110 …
severity: critical
cvss: 9.8
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'
cvssSource: cna
cwe:
  - CWE-787
vendor: Mp3-Avi-Mpeg-Wmv-Rm-To-Audio-Cd-Burner
product: Ether_MP3_CD_Burner
affected:
  - Ether_MP3_CD_Burner 1.3.8
ssvc:
  exploitation: poc
  automatable: 'no'
  technicalImpact: total
  timestamp: '2026-01-16T16:10:04.543133Z'
exploitAvailable: true
published: '2026-01-15'
updated: '2026-10-01'
sourceUpdated: '2026-10-01T15:19:40.759Z'
source: CVEORG
sourceUrl: 'https://www.cve.org/CVERecord?id=CVE-2021-47785'
references:
  - url: 'https://www.exploit-db.com/exploits/50332'
    label: ExploitDB-50332
  - url: >-
      https://download.cnet.com/mp3avimpegwmvrm-to-audio-cd-burner/3000-2646_4-10658515.html
    label: Software Download Link
  - url: 'https://www.vulncheck.com/advisories/ethermpcdburner-buffer-overflow-seh'
    label: 'VulnCheck Advisory: Ether_MP3_CD_Burner 1.3.8 - Buffer Overflow (SEH)'
tags:
  - cve.org
  - exploit-available
epss: 0.00919
epssPercentile: 0.58831
ingestedAt: '2026-10-01T15:48:17.873Z'
---

## Overview

Ether MP3 CD Burner 1.3.8 contains a buffer overflow vulnerability in the registration name field that allows remote code execution. Attackers can craft a malicious payload to overwrite SEH handlers and execute a bind shell on port 3110 by exploiting improper input validation.

## Affected

- `Ether_MP3_CD_Burner 1.3.8`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
