vendor:
Internet Manager
by:
metacom
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Internet Manager
Affected Version From: TMO_PCV1.0.5B06
Affected Version To: TMO_PCV1.0.5B06
Patch Exists: NO
Related CWE:
CPE: a:t-mobile:internet_manager:1.0.5b06
Platforms Tested: Windows (Win-7, Win-8.1, Win-XPSp3)
2015
T-Mobile Internet Manager SEH Buffer Overflow
This exploit allows an attacker to execute arbitrary code by exploiting a buffer overflow vulnerability in T-Mobile Internet Manager software for Windows. The vulnerability occurs in the handling of the UpdateCfg.ini file, which can be exploited by copying a specially crafted file to the program's installation directory and triggering an update.
Mitigation:
To mitigate this vulnerability, users should update to the latest version of T-Mobile Internet Manager software. Additionally, it is recommended to exercise caution when downloading and executing files from untrusted sources.