vendor:
Network Inventory Explorer
by:
Hashim Jawad - ihack4falafel
7.5
CVSS
HIGH
Local Buffer Overflow
119
CWE
Product Name: Network Inventory Explorer
Affected Version From: 8.54
Affected Version To: 8.54
Patch Exists: NO
Related CWE:
CPE: a:10-strike:network_inventory_explorer:8.54
Platforms Tested: Windows 7 Enterprise - SP1 (x86)
2018
10-Strike Network Inventory Explorer 8.54 – Local Buffer Overflow (SEH)
The exploit allows for a local buffer overflow in 10-Strike Network Inventory Explorer version 8.54. By opening a malicious text file, an attacker can trigger the overflow and potentially execute arbitrary code.
Mitigation:
The vendor has not provided a patch for this vulnerability. It is recommended to avoid opening untrusted text files in 10-Strike Network Inventory Explorer version 8.54.