Description
NetOp (now part of Impero Software) Remote Control Client v9.5 is vulnerable to a stack-based buffer overflow when processing .dws configuration files. If a .dws file contains a string longer than 520 bytes, the application fails to perform proper bounds checking, allowing an attacker to execute arbitrary code when the file is opened.
Problem types
CWE-121 Stack-based Buffer Overflow
Product status
9.5
Credits
Ruben Alejandro "chap0"
References
raw.githubusercontent.com/...its/windows/fileformat/netop.rb
www.exploit-db.com/exploits/17223
www.exploit-db.com/exploits/18697
www.fortiguard.com/...trol-dws-file-handling-buffer-overflow
netop.com/
web.archive.org/...s.com/netop-remotecontrol-10-01-released/
www.vulncheck.com/...control-client-dws-file-buffer-overflow