vendor:
eDVR Manager
by:
Praveen Darshanam
7.5
CVSS
HIGH
Stack Buffer Overflow
CWE
Product Name: eDVR Manager
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE: CVE-2015-2097
CPE:
Platforms Tested: Windows XP SP3 using IE8
2015
WebGate eDVR Manager Connect Method Stack Buffer Overflow
This exploit targets a stack buffer overflow vulnerability in the WebGate eDVR Manager software. By sending a specially crafted request to the Connect method, an attacker can overwrite the stack and potentially execute arbitrary code on the target system. The vulnerability has been assigned CVE-2015-2097.
Mitigation:
Update to the latest version of the WebGate eDVR Manager software to fix this vulnerability. Additionally, it is recommended to implement proper input validation and sanitization to prevent buffer overflow vulnerabilities.