CVE-2019-25319
CRITICAL SEVERITYCVSS Score & Metrics
Base Score
9.8 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Description
Domain Quester Pro 6.02 contains a stack overflow vulnerability that allows remote attackers to execute arbitrary code by overwriting Structured Exception Handler (SEH) registers. Attackers can craft a malicious payload targeting the 'Domain Name Keywords' input field to trigger an access violation and execute a bind shell on port 9999.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-121
Source
NVD
Vendor
Internet-Soft
Product
Domain Quester Pro
Discussion (0)
Add Comment
No comments yet. Be the first!