vendor:
SpotAuditor
by:
Kirill Nikolaev
7.5
CVSS
HIGH
Local Buffer Overflow (SEH)
119
CWE
Product Name: SpotAuditor
Affected Version From: 5.3.2002
Affected Version To: 5.3.2002
Patch Exists: NO
Related CWE:
CPE: a:nsauditor:spotauditor:5.3.2
Platforms Tested: Windows 7 SP1 x86
2019
SpotAuditor 5.3.2 – ‘Base64’ Local Buffer Overflow (SEH)
This exploit targets a local buffer overflow vulnerability in SpotAuditor 5.3.2. By sending a specially crafted payload, an attacker can overwrite the Structured Exception Handler (SEH) and gain control of the program's execution flow.
Mitigation:
The vendor has not provided a patch for this vulnerability. It is recommended to avoid using the affected version of SpotAuditor or to implement additional security measures to mitigate the risk.