vendor:
Windows Explorer
by:
Ghaaf
5.5
CVSS
MEDIUM
Denial of Service
119
CWE
Product Name: Windows Explorer
Affected Version From: Windows 7(x86/x64)
Affected Version To: Windows 7(x86/x64)
Patch Exists: NO
Related CWE:
CPE: o:microsoft:windows_7
Platforms Tested: Windows 7(x86/x64)
2018
Microsoft Windows Explorer Out-of-Bound read – Denial of Service (PoC)
This is a proof of concept exploit for a vulnerability in Microsoft Windows Explorer that allows an out-of-bound read, leading to a denial of service. The exploit is achieved by crafting a specially formatted buffer and sending it to the Windows Explorer application. This vulnerability does not have a specific CVE assigned to it.
Mitigation:
Apply the latest security updates and patches provided by Microsoft. Avoid opening untrusted files or visiting suspicious websites.