vendor:
CuteZip
by:
C4SS!0 G0M3S
7.8
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: CuteZip
Affected Version From: 2.1
Affected Version To: 2.1
Patch Exists: YES
Related CWE: N/A
CPE: a:globalscape:cutezip:2.1
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: WIN-XP SP3 PORTUGUESE BRAZILIAN
2011
Exploit Buffer Overflow CuteZip 2.1
This exploit has zip Copied exploits of the team Corelan. It is a vulnerability in the vulnerable function of CuteZip 2.1 build 9.24.1 which allows an attacker to execute arbitrary code by overflowing a buffer on the stack. The vulnerable function is located at 0x0047CC0E and contains instructions such as JB SHORT, REP MOVS, JMP DWORD, LEA ECX, AND EDX, MOV AL, SHR ECX, CMP ECX, and JB SHORT.
Mitigation:
The best way to mitigate this vulnerability is to update to the latest version of CuteZip and apply all security patches.