CVE-2008-2745
Black Ice Software Annotation Plugin 10.95 - Stack-based Buffer Overflow via AnnoSaveToTiff Method
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2008-2745. PoCs published by shinnai.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in Black Ice Software Annotation Plugin (BiAnno.ocx) version 10.9.5.0. It uses a crafted string to overflow a buffer and execute arbitrary shellcode via a VBScript trigger in Internet Explorer.
Description
Stack-based buffer overflow in BiAnno ActiveX Control (BiAnno.ocx) in Black Ice Software Annotation Plugin 10.95 allows remote attackers to execute arbitrary code via a long parameter to the AnnoSaveToTiff method.
Exploits (2)
This exploit targets a buffer overflow vulnerability in Black Ice Software Annotation Plugin (BiAnno.ocx) version 10.9.5.0. It uses a crafted string to overflow a buffer and execute arbitrary shellcode via a VBScript trigger in Internet Explorer.
This exploit targets a buffer overflow vulnerability in Black Ice Software Annotation Plugin (BiAnno.ocx) version 10.9.5.0. It uses heap spraying and shellcode execution to achieve remote code execution via a crafted HTML file.