vendor:
IKEView R60
by:
VIKRAMADITYA "-OPTIMUS"
7.5
CVSS
HIGH
Buffer overflow
CWE
Product Name: IKEView R60
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP Service Pack 2
2015
IKEView R60 Buffer overflow(SEH) Local Exploit
This exploit takes advantage of a buffer overflow vulnerability in IKEView R60 to execute arbitrary code. By creating a specially crafted file and opening it with IKEView.exe, an attacker can trigger the overflow and open a bind tcp port at port 4444. The exploit has been tested on Windows XP Service Pack 2.
Mitigation:
There is no known mitigation for this vulnerability.