vendor:
Sam Spade
by:
VIKRAMADITYA
9.8
CVSS
CRITICAL
Buffer Overflow
119
CWE
Product Name: Sam Spade
Affected Version From: 1.14
Affected Version To: 1.14
Patch Exists: NO
Related CWE:
CPE: a:sam_spade:sam_spade:1.14
Platforms Tested: Windows XP Service Pack 2
2015
Sam Spade 1.14 Scan from IP address Field Exploit
This exploit allows an attacker to execute arbitrary code by exploiting a buffer overflow vulnerability in Sam Spade 1.14. The vulnerability occurs when processing input from the 'Scan from IP addresses' input field. By providing a specially crafted input, an attacker can overwrite the return address and gain control of the program's execution flow.
Mitigation:
Update to the latest version of Sam Spade or use an alternative tool for scanning IP addresses.