CVE-2007-0352
Microsoft HTML Help Workshop - Stack-Based Buffer Overflow via Crafted .cnt File
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-0352. PoCs published by porkythepig.
AI-analyzed exploit summary This is a functional exploit for CVE-2007-0352, targeting a buffer overflow vulnerability in Microsoft Help Workshop v4.03.0002. It generates a malicious .cnt file that triggers arbitrary code execution when opened, spawning a specified process (default: notepad.exe).
Description
Stack-based buffer overflow in Microsoft Help Workshop 4.03.0002 allows user-assisted remote attackers to execute arbitrary code via a crafted .cnt file composed of lines that begin with an integer followed by a space and a long string.
Exploits (1)
This is a functional exploit for CVE-2007-0352, targeting a buffer overflow vulnerability in Microsoft Help Workshop v4.03.0002. It generates a malicious .cnt file that triggers arbitrary code execution when opened, spawning a specified process (default: notepad.exe).