Description
BacklinkSpeed 2.4 contains a buffer overflow vulnerability that allows attackers to corrupt the Structured Exception Handler (SEH) chain through malicious file import. Attackers can craft a specially designed payload file to overwrite SEH addresses, potentially executing arbitrary code and gaining control of the application.
Problem types
Product status
Credits
Saeed reza Zamanian
References
www.exploit-db.com/exploits/48726 (ExploitDB-48726)
www.dummysoftware.com (Vendor Homepage)
www.dummysoftware.com/backlinkspeed.html (Software Download Page)
www.vulncheck.com/...s/backlinkspeed-buffer-overflow-poc-seh (VulnCheck Advisory: BacklinkSpeed 2.4 - Buffer Overflow PoC (SEH))