vendor:
ZIP Password Refixer
by:
Greg Priest
9.3
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: ZIP Password Refixer
Affected Version From: 3.1.1
Affected Version To: 3.1.1
Patch Exists: NO
Related CWE: N/A
CPE: a:isumsoft:zip_password_refixer:3.1.1
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows7 x64 HUN/ENG Professional
2018
iSumsoft Local Buffer Overflow Vuln. 0day(SEH)
This exploit is a proof-of-concept code for a buffer overflow vulnerability in iSumsoft ZIP Password Refixer Version 3.1.1. The vulnerability is caused due to a boundary error when handling user-supplied data, which can be exploited to cause a stack-based buffer overflow by sending a specially crafted string to the vulnerable application. This may allow an attacker to execute arbitrary code.
Mitigation:
No known mitigation or remediation for this vulnerability.