CVE-2008-0493
IrfanView - Remote Code Execution via Crafted FlashPix File
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-0493. PoCs published by Marsu.
AI-analyzed exploit summary This exploit targets a memory corruption vulnerability in IrfanView 4.10 by crafting a malicious .FPX file. It includes shellcode to launch calc.exe, demonstrating arbitrary code execution.
Description
fpx.dll 3.9.8.0 in the FlashPix plugin for IrfanView 4.10 allows remote attackers to execute arbitrary code via a crafted FlashPix (.FPX) file, which triggers heap corruption. NOTE: some of these details are obtained from third party information.
Exploits (1)
This exploit targets a memory corruption vulnerability in IrfanView 4.10 by crafting a malicious .FPX file. It includes shellcode to launch calc.exe, demonstrating arbitrary code execution.