CVE-2007-2193
ACDSee 9.0/Pro 8.1/Photo Editor 4.0 - Stack-Based Buffer Overflow via Crafted XPM File
Title source: llmExploitation Summary
EIP tracks 3 public exploits for CVE-2007-2193.
PoCs published by Metasploit, Marsu, including Metasploit module exploits/windows/fileformat/acdsee_xpm.
AI-analyzed exploit summary This Metasploit module exploits a buffer overflow in ACDSee 9.0 by crafting a malicious XPM file. The exploit leverages SEH overwrite to execute arbitrary code when the file is viewed.
Description
Stack-based buffer overflow in the ID_X.apl plugin in ACDSee 9.0 Build 108, Pro 8.1 Build 99, and Photo Editor 4.0 Build 195 allows user-assisted remote attackers to execute arbitrary code via a crafted XPM file with a long section string. NOTE: some of these details are obtained from third party information.
Exploits (3)
This Metasploit module exploits a buffer overflow in ACDSee 9.0 by crafting a malicious XPM file. The exploit leverages SEH overwrite to execute arbitrary code when the file is viewed.
This exploit leverages a buffer overflow in ACDSee v9.0 when processing a crafted .XPM file. It includes shellcode to either launch calc.exe or bind a shell to port 4444, targeting ACDSee and ACDSee Quick View.
This Metasploit module exploits a buffer overflow in ACDSee 9.0 by crafting a malicious XPM file. The exploit leverages SEH overwrite to achieve arbitrary code execution when the file is viewed.