Back to CVE List

CVE-2018-25360

HIGH SEVERITY

CVSS Score & Metrics

Base Score
8.4 / 10
Vector String
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Vulnerability Description

AgataSoft Auto PingMaster 1.5 contains a stack-based buffer overflow vulnerability in the Trace Route host name field that allows local attackers to execute arbitrary code by triggering structured exception handling. Attackers can craft a malicious ping.txt file with shellcode and jump instructions that overwrite the SEH handler pointer to achieve code execution when the file contents are pasted into the application.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-121
Source
NVD
Vendor
Agatasoft
Product
Auto PingMaster

External References

Discussion (0)

Add Comment

No comments yet. Be the first!