vendor:
SnackAmp
by:
Muhamad Fadzil Ramli
7.5
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: SnackAmp
Affected Version From: 3.1.3 Beta
Affected Version To: 3.1.3 Beta
Patch Exists: YES
Related CWE:
CPE:
Platforms Tested: Windows XP SP3
2010
SnackAmp 3.1.3B Malicious SMP Buffer Overflow Vulnerability (SEH – DEP BYPASS)
This exploit targets the SnackAmp 3.1.3B software and utilizes a buffer overflow vulnerability to execute arbitrary code. It bypasses both SEH and DEP protections. The exploit payload is a shellcode that opens the calculator application on the target system.
Mitigation:
The vendor has released a patch to address this vulnerability. Users are advised to update to the latest version of SnackAmp (3.1.4) to mitigate the risk.