header-logo
Suggest Exploit
vendor:
Windows
by:
milw0rm.com
N/A
CVSS
N/A
Local HEAP Overflow
CWE
Product Name: Windows
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE:
Metasploit:
Other Scripts:
Platforms Tested: Windows
2007

MS Windows .HLP File Local HEAP Overflow PoC 0day

This is a proof of concept (PoC) exploit for a local heap overflow vulnerability in MS Windows .HLP files. The exploit takes advantage of a flaw in the way .HLP files are processed, allowing an attacker to overflow the heap and potentially execute arbitrary code. The specific details of the vulnerability are not provided in this post.

Mitigation:

There is no known mitigation or remediation for this vulnerability at the time of this post.
Source

Exploit-DB raw data:

MS Windows .HLP File Local HEAP Overflow PoC 0day

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/3693.hlp.tgz (04092007-evil1.hlp.tgz)

# milw0rm.com [2007-04-09]
cqrsecured