vendor:
Appweb
by:
Dr_IDE
7,5
CVSS
HIGH
Buffer Overflow
120 (Buffer Copy without Checking Size of Input)
CWE
Product Name: Appweb
Affected Version From: 3.0B.2-4
Affected Version To: 3.0B.2-4
Patch Exists: Yes
Related CWE: N/A
CPE: a:embedthis:appweb:3.0b.2-4
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP2
2009
EmbedThis Appweb v3.0B.2-4 Multiple Remote Buffer Overflow PoCs
This exploit is based on a vulnerability in EmbedThis Appweb v3.0B.2-4, which allows a remote attacker to cause a buffer overflow by sending a specially crafted payload to the server. This payload can be sent using a socket connection, and will cause a fault in libappweb.dll.
Mitigation:
The vendor has released a patch to address this vulnerability.