vendor:
DiskSavvy Enterprise
by:
Peter Baris
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: DiskSavvy Enterprise
Affected Version From: 9.4.18
Affected Version To: 9.4.18
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows 7 Pro SP1 x64, Windows 10 Pro x64
2017
DiskSavvy Enterprise 9.4.18 – Remote buffer overflow – SEH overwrite with WoW64 egghunters
This exploit takes advantage of a remote buffer overflow vulnerability in DiskSavvy Enterprise version 9.4.18. It uses a SEH overwrite technique with WoW64 egghunters to gain remote code execution. The exploit is specifically designed for 64-bit operating systems. It includes a modified version of the original Win7 egghunter and a Win10 WoW64 egghunter. If a WoW64 egghunter is needed for other Windows versions, the author can be contacted through their website.
Mitigation:
Update to a patched version of DiskSavvy Enterprise.