vendor:
Winlog Lite SCADA HMI system
by:
FaryadR (a.k.a Ciph3r)
7.5
CVSS
HIGH
SEH 0verwrite
CWE
Product Name: Winlog Lite SCADA HMI system
Affected Version From: 02.06.17
Affected Version To: 02.06.17
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP SP3
Winlog Lite SCADA HMI system SEH 0verwrite Vulnerability
The Winlog Lite SCADA HMI system is vulnerable to a SEH 0verwrite exploit. By injecting data into the Application Name field and selecting the Build option in the Tools menu, an attacker can execute arbitrary code. The exploit involves a buffer overflow of 9986 bytes, a pointer to the next SEH record, a SE handler, a non-SafeSEH address for bypassing SafeSEH protection, a NOP instruction, a jump to the ESP register, and a shellcode.
Mitigation:
The vendor has not provided a patch or mitigation for this vulnerability. It is recommended to discontinue the use of Winlog Lite SCADA HMI system or implement additional security measures to protect against potential exploits.