← Retour à la recherche de CVE

CVE-2018-25360

Auto PingMaster

Description

AgataSoft Auto PingMaster 1.5 contains a stack-based buffer overflow vulnerability in the Trace Route host name field that allows local attackers to execute arbitrary code by triggering structured exception handling. Attackers can craft a malicious ping.txt file with shellcode and jump instructions that overwrite the SEH handler pointer to achieve code execution when the file contents are pasted into the application.

CVSS 8.4EPSS 0.189%Risque 0.85
Voir la source
Publication
2026-05-25 15:16:18
Versions concernées
<1.5
Type
Logiciel critique
Vecteur
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H