Description
10-Strike Network Inventory Explorer 8.65 contains a buffer overflow vulnerability in exception handling that allows remote attackers to execute arbitrary code. Attackers can craft a malicious file with 209 bytes of padding and a specially constructed Structured Exception Handler to trigger code execution.
Problem types
Product status
Credits
Sectechs
References
www.exploit-db.com/exploits/49134 (ExploitDB-49134)
www.10-strike.com (10-Strike Network Inventory Explorer Vendor Homepage)
www.vulncheck.com/...-inventory-explorer-buffer-overflow-seh (VulnCheck Advisory: 10-Strike Network Inventory Explorer 8.65 - Buffer Overflow (SEH))