vendor:
UltraISO
by:
n00b
7.5
CVSS
HIGH
Stack Overflow
121
CWE
Product Name: UltraISO
Affected Version From: UltraISO 8.6.2.2011
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP Service Pack 2
Ultra ISO Stack Overflow Vulnerability
Ultra ISO is exploitable via opening a specially crafted Cue file. There is a limitation that the user must have the bin file in the same directory as the cue file. Command execution is possible as we can control $ebp and $eip registers.
Mitigation:
Apply the latest patch from the vendor.