Exploit Microsoft Windows XP/2000/2003 - 'winhlp32' Phrase Integer Overflow

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
25049
Проверка EDB
  1. Пройдено
Автор
FLASHSKY FANGXING
Тип уязвимости
REMOTE
Платформа
WINDOWS
CVE
cve-2004-1306
Дата публикации
2004-12-23
Код:
source: https://www.securityfocus.com/bid/12091/info

Microsoft Windows is prone to an integer overflow vulnerability. This issue exists in 'winhlp32.exe' and is exposed when a malformed phrase compressed Windows Help file (.hlp) is processed by the program.

Successful exploitation may allow execution of arbitrary code in the context of the user that opens the malicious Help file. The Help file may originate from an external or untrusted source, so this vulnerability is considered remote in nature. 

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/25049.gz
 
Источник
www.exploit-db.com

Похожие темы