Exploitation Summary
EIP tracks 1 public exploit for CVE-2004-0333. PoCs published by snooq.
AI-analyzed exploit summary This is a proof-of-concept exploit for CVE-2004-0333, targeting a heap overflow vulnerability in WinZip 8.1's MIME parsing. It manipulates the EBX register to divert execution flow into shellcode, spawning 'notepad.exe' as a harmless payload.
Description
Buffer overflow in the UUDeview package, as used in WinZip 6.2 through WinZip 8.1 SR-1, and possibly other packages, allows remote attackers to execute arbitrary code via a MIME archive with certain long MIME parameters.
Exploits (1)
This is a proof-of-concept exploit for CVE-2004-0333, targeting a heap overflow vulnerability in WinZip 8.1's MIME parsing. It manipulates the EBX register to divert execution flow into shellcode, spawning 'notepad.exe' as a harmless payload.