Security flaw discovered in the CD burner application

Jan 24, 2007 09:22 GMT  ·  By

Nowadays, it is very important to own a CD/DVD burner that allows us to burn discs fast and easy because we all need to transfer files at work or on the home computer. At this time, Nero Burning ROM is the most popular CD burning application because it was the first program to provide powerful features to write your data on discs. Although Nero looks like the perfect solution for everybody, the application is distributed under a shareware license that requires you to buy the program or you can use it with multiple limitations. As you probably know, the battle for the most powerful application is now challenged by the freeware programs so it's obvious that all users are looking for a free program with the same features as a trial one.

CDBurnerXP is one of these freeware applications that are currently offering well-developed functions to help you burn high-quality CDs using a simple and attracting interface. The main important element of the CDBurnerXP program is the freeware license that allows you to use the tool without any payment. That's why the number of the users increased a lot and the application became one of the most popular CD burners available on the internet.

Because I'm sure many users already tried the utility, you must know that security company Secunia discovered a security flaw in CDBurnerXP that allows attackers to compromise a vulnerable system. The firm rated the flaw as highly critical, adding that the affected versions of the tool are only 2.x and 3.x.

"Secunia Research has discovered a vulnerability in CDBurnerXP Pro, which can be exploited by malicious people to compromise a user's system," Secunia said. Carsten Eiram, Secunia Research, also provided a quite harsh solution, saying that you must use another CD burner application or set the kill-bit for the ActiveX control.

CDBurnerXP version 3.5.101.6 Alpha was also tested by Softpedia and it is available as a free download on this link.