Exploitation Summary
EIP tracks 1 public exploit for CVE-2012-5324. PoCs published by LiquidWorm.
AI-analyzed exploit summary This exploit demonstrates a stack-based buffer overflow in Tracker Software pdfSaver ActiveX (pdfxctrl.dll) via the StoreInRegistry and InitFromRegistry functions, leading to SEH overwrite and potential arbitrary code execution.
Description
Multiple buffer overflows in the Pdf Printer Preferences ActiveX Control in pdfxctrl.dll in Tracker Software PDF-XChange 3.60.0128 allow remote attackers to execute arbitrary code via a long string in the (1) sub_path parameter to the StoreInRegistry function or (2) sub_key parameter to the InitFromRegistry function.
Exploits (1)
This exploit demonstrates a stack-based buffer overflow in Tracker Software pdfSaver ActiveX (pdfxctrl.dll) via the StoreInRegistry and InitFromRegistry functions, leading to SEH overwrite and potential arbitrary code execution.