CVE-2011-2595
ACDSee FotoSlate 4.0 Build 146 - Stack-Based Buffer Overflow via PLP File Tag
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2011-2595.
PoCs published by Metasploit, Parvez Anwar, juan vazquez, including Metasploit module exploits/windows/fileformat/acdsee_fotoslate_string.
AI-analyzed exploit summary This Metasploit module exploits a buffer overflow in ACDSee FotoSlate 4.0 Build 146 via a crafted 'id' parameter in a String element within a PLP file. It leverages SEH overwrites to achieve arbitrary code execution.
Description
Multiple stack-based buffer overflows in ACDSee FotoSlate 4.0 Build 146 allow remote attackers to execute arbitrary code via a long id parameter in a (1) String or (2) Int tag in a FotoSlate Project (aka PLP) file.
Exploits (2)
This Metasploit module exploits a buffer overflow in ACDSee FotoSlate 4.0 Build 146 via a crafted 'id' parameter in a String element within a PLP file. It leverages SEH overwrites to achieve arbitrary code execution.
This Metasploit module exploits a buffer overflow in ACDSee FotoSlate 4.0 Build 146 via a crafted PLP file with an overflowed 'id' parameter in a String element. It leverages SEH overwrites to achieve arbitrary code execution.