Popis
PassFab RAR Password Recovery 9.3.2 contains a structured exception handler (SEH) buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying a malicious payload. Attackers can craft a payload with a buffer overflow, NSEH jump, and shellcode, then paste it into the -Licensed E-mail and Registration Code- field during registration to trigger code execution.
CVSS 8.4EPSS 0.215%Riziko 0.86
Zobraziť zdroj- Zverejnené
- 2026-03-26 14:16:05
- Dotknuté verzie
- <=9.3.2
- Typ
- Installed app
- Vektor
- CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H