vendor:
POP Peeper
by:
Anastasios Monachos (secuid0)
7.8
CVSS
HIGH
SEH Exploit
119
CWE
Product Name: POP Peeper
Affected Version From: 3.7.0.0
Affected Version To: 3.7.0.0
Patch Exists: YES
Related CWE: N/A
CPE: a:poppeeper:poppeeper:3.7.0.0
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP2 EN
2009
POP Peeper 3.7 SEH Exploit
POP Peeper 3.7 SEH Exploit is a buffer overflow vulnerability that allows an attacker to execute arbitrary code on the vulnerable system. The vulnerability exists in the POP Peeper 3.7.0.0 application, which is a Windows-based email client. The vulnerability is triggered when a specially crafted .ini file is opened by the application. The file contains a malicious payload that overwrites the SEH handler and executes the attacker's code.
Mitigation:
The vendor has released a patch to address this vulnerability. Users should update to the latest version of POP Peeper.