vendor:
Amaya Web Browser
by:
SkD
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Amaya Web Browser
Affected Version From: 11.0.1
Affected Version To: 11.0.1
Patch Exists: YES
Related CWE: N/A
CPE: a:w3c:amaya:11.0.1
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Vista SP1
2009
Amaya Web Browser <= 11.0.1 Remote Buffer Overflow Exploit
This is an advanced buffer overflow exploitation using a new method called shellhunting. It works only on a fully patched Vista SP1, but the user may need to click 'Refresh' to make the shellcode exec sometimes.
Mitigation:
Update to the latest version of Amaya Web Browser