vendor:
ProShow Producer
by:
mr.pr0n
N/A
CVSS
HIGH
Local Buffer Overflow
119
CWE
Product Name: ProShow Producer
Affected Version From: v5.0.3256
Affected Version To: v5.0.3256
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP SP3
2012
Photodex ProShow Producer v5.0.3256 – Local Buffer Overflow Exploit
This exploit takes advantage of a local buffer overflow vulnerability in Photodex ProShow Producer v5.0.3256. The vulnerability allows an attacker to execute arbitrary code by overflowing a buffer with a specially crafted payload. The exploit includes an egghunter and shellcode for a windows/shell_reverse_tcp payload.
Mitigation:
Update to a patched version of Photodex ProShow Producer.