Description
Domain Quester Pro 6.02 contains a stack overflow vulnerability that allows remote attackers to execute arbitrary code by overwriting Structured Exception Handler (SEH) registers. Attackers can craft a malicious payload targeting the 'Domain Name Keywords' input field to trigger an access violation and execute a bind shell on port 9999.
Problem types
Product status
Credits
boku
References
www.exploit-db.com/exploits/47825 (ExploitDB-47825)
www.internet-soft.com/ (Software Vendor Homepage)
www.vulncheck.com/...s/domain-quester-pro-stack-overflow-seh (VulnCheck Advisory: Domain Quester Pro 6.02 - Stack Overflow (SEH))