vendor:
xwpe - Windows Editor
by:
Juan Sacco
7.5
CVSS
HIGH
Stack-based Buffer Overflow
CWE
Product Name: xwpe - Windows Editor
Affected Version From: xwpe v1.5.30a-2.1 and prior
Affected Version To: xwpe v1.5.30a-2.1
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Kali Linux 2.0 x86
xwpe – Windows Editor v1.5.30a-2.1 Stack-based Buffer Overflow
xwpe v1.5.30a-2.1 and prior versions are prone to a stack-based buffer overflow vulnerability because the application fails to perform adequate boundary-checks on user-supplied input. An attacker could exploit this issue to execute arbitrary code in the context of the application. Failed exploit attempts will result in a denial-of-service condition.
Mitigation:
Apply the latest patch provided by the vendor.