vendor:
Camimage
by:
rgod
7.5
CVSS
HIGH
Remote SEH Overwrite
Unknown
CWE
Product Name: Camimage
Affected Version From: ISSCamControl.dll 1.0.1.5
Affected Version To: ISSCamControl.dll 1.0.1.5
Patch Exists: NO
Related CWE: Unknown
CPE: a:provideo:camimage:1.0.1.5
Platforms Tested: Windows 2000 SP4
Unknown
IE6 / Provideo Camimage class (ISSCamControl.dll 1.0.1.5) remote seh overwrite exploit / win2k sp4
This exploit targets the Provideo Camimage class in ISSCamControl.dll version 1.0.1.5. By exploiting a vulnerability in Internet Explorer 6 on Windows 2000 SP4, an attacker can overwrite the Structured Exception Handler (SEH) and gain unauthorized access. The exploit involves adding a user 'su' with the password 'tzu' using Metasploit. The script includes the shellcode, SEH handler address, and NOP sled.
Mitigation:
Apply security patches and updates to Internet Explorer and the affected DLL. Use an updated version of the software that does not have this vulnerability.