vendor:
UltraISO
by:
n00b
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: UltraISO
Affected Version From: <= 8.6.2.2011
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE: a:ezb_systems:ultraiso:8.6.2.2011
Platforms Tested: Windows XP Service Pack 2
2007
UltraISO <= 8.6.2.2011 local buffer-overflow
This exploit allows an attacker to execute arbitrary code on a vulnerable machine running UltraISO version 8.6.2.2011 or earlier. The exploit takes advantage of a local buffer overflow vulnerability in the software. By providing a specially crafted bin and cue file, an attacker can execute arbitrary code with the privileges of the user running the vulnerable software. This exploit has been tested on Windows XP Service Pack 2. The shell_code used in the exploit is designed to execute the Windows calculator (calc.exe).
Mitigation:
Upgrade to a version of UltraISO that is not vulnerable to this buffer overflow