Description
Prime95 version 29.8 build 6 contains a buffer overflow vulnerability in the user ID input field that allows remote attackers to execute arbitrary code. Attackers can craft a malicious payload and paste it into the PrimeNet user ID and proxy host fields to trigger a bind shell on port 3110.
Problem types
Product status
Credits
Achilles
References
www.exploit-db.com/exploits/47802 (ExploitDB-47802)
www.mersenne.org (Vendor Homepage)
www.vulncheck.com/...prime-version-build-buffer-overflow-seh (VulnCheck Advisory: Prime95 Version 29.8 build 6 - Buffer Overflow (SEH))