vendor:
NeoTracePro
by:
A. Alejandro Hernández aka nitr0us
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: NeoTracePro
Affected Version From: 3.25
Affected Version To: 3.25
Patch Exists: NO
Related CWE:
CPE: a:neotracepro:neotracepro:3.25
Platforms Tested: Windows XP SP2 with Internet Explorer 7.0.5730.11
2007
NeoTracePro 3.25 ActiveX Control “TraceTarget()” b0f [NeoTraceExplorer.dll] Remote 0-day Exploit
This exploit targets a buffer overflow vulnerability in the TraceTarget() method of the NeoTracePro 3.25 ActiveX Control. By passing a large string (~486 bytes), an attacker can execute remote commands on the target system. The vulnerability was discovered by A. Alejandro Hernández and can be exploited due to the lack of boundary checking in the TraceTarget() method. This vulnerability was previously reported but no exploit was released. The exploit has been tested on Windows XP SP2 with Internet Explorer 7.0.5730.11 and NeoTracePro 3.25.
Mitigation:
The vendor should implement proper boundary checking in the TraceTarget() method to prevent buffer overflow attacks. Users should also update to the latest version of NeoTracePro to mitigate this vulnerability.