vendor:
Dev-C++
by:
storm
N/A
CVSS
HIGH
Arbitrary Code Execution
119
CWE
Product Name: Dev-C++
Affected Version From: 4.9.9.2
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE: a:bloodshed:dev-c++:4.9.9.2
Platforms Tested: Windows Vista SP2
2010
Bloodshed Dev-C++ Binary Hijacking Exploit
This exploit allows attackers to execute arbitrary code by enticing a legitimate user to compile a file from a network share location that contains a specially crafted executable file.
Mitigation:
Update to a patched version of Bloodshed Dev-C++