CVE-2009-1608

Microchip MPLAB IDE 8.30 - Buffer Overflow via .MCP Project File

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2009-1608.

AI-analyzed exploit summary This exploit targets a structured exception handler (SEH) overwrite vulnerability in MPLAB IDE 8.30 by crafting a malicious .mcp project file. It uses a buffer overflow to overwrite the SEH record and execute arbitrary shellcode (calc.exe in this case).

Description

Multiple buffer overflows in Microchip MPLAB IDE 8.30 and possibly earlier versions allow user-assisted remote attackers to execute arbitrary code via a .MCP project file with long (1) FILE_INFO, (2) CAT_FILTERS, and possibly other fields.

Exploits (1)

exploitdb WORKING POC
pythonlocalwindows
https://www.exploit-db.com/exploits/8656

This exploit targets a structured exception handler (SEH) overwrite vulnerability in MPLAB IDE 8.30 by crafting a malicious .mcp project file. It uses a buffer overflow to overwrite the SEH record and execute arbitrary shellcode (calc.exe in this case).

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: MPLAB IDE 8.30
No auth needed
Prerequisites: Victim must open the malicious .mcp file in MPLAB IDE 8.30
devstral-2 · analyzed Feb 19, 2026 Full analysis →

References (7)

Core 7
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/54370
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/50419
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/35054
Various Sources x_refsource_misc
http://security.bkis.vn/?p=654
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/50418
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/34897
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/503400/100/0/threaded

Scores

EPSS 0.1119
EPSS Percentile 95.4%

Details

CWE
CWE-119
Status published
Products (1)
microchip/mplab_ide 8.30
Published May 11, 2009
Tracked Since Feb 18, 2026