CVE-2008-2693
Black Ice Barcode SDK 5.01 - Stack-Based Buffer Overflow via BITiffCtrl SetByteOrder Method
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2008-2693. PoCs published by shinnai.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in Black Ice Software Inc Barcode SDK (BITiff.ocx) version 10.9.3.0. It uses a crafted string to overflow the buffer, overwrite EIP, and execute shellcode to achieve remote code execution.
Description
Stack-based buffer overflow in the BITIFF.BITiffCtrl.1 ActiveX control in BITiff.ocx 10.9.3.0 in Black Ice Barcode SDK 5.01 allows remote attackers to execute arbitrary code via a long first argument to the SetByteOrder method.
Exploits (2)
This exploit targets a buffer overflow vulnerability in Black Ice Software Inc Barcode SDK (BITiff.ocx) version 10.9.3.0. It uses a crafted string to overflow the buffer, overwrite EIP, and execute shellcode to achieve remote code execution.
This exploit targets a buffer overflow vulnerability in Black Ice Software Inc Barcode SDK (BITiff.ocx) version 10.9.3.0. It uses a heap spray technique to achieve remote code execution via a crafted HTML file exploiting the ActiveX control.