vendor:
eZ
by:
kralor
7.5
CVSS
HIGH
Remote Code Execution
CWE
Product Name: eZ
Affected Version From: 3.3
Affected Version To: 3.5
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
eZ v3.3 < v3.5 remote exploit
This exploit targets eZ versions 3.3 to 3.5. It exploits a vulnerability in the Cryptso.dll file, which contains a 'static' jmp esp instruction. The exploit jumps to esp and then jumps backward to reach the shellcode. The shellcode provides a reverse remote shell. The exploit uses the PEB technique for the universal shellcode.
Mitigation:
Upgrade to a version higher than 3.5 or apply a patch if available.