CVE-2013-0726
ERDAS ER Viewer <13.00.0001 - Buffer Overflow
Title source: llmDescription
Stack-based buffer overflow in the ERM_convert_to_correct_webpath function in ermapper_u.dll in ERDAS ER Viewer before 13.00.0001 allows remote attackers to execute arbitrary code via a crafted pathname in an ERS file.
Exploits (2)
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubylocalwindows
https://www.exploit-db.com/exploits/25448
metasploit
WORKING POC
NORMAL
by Parvez Anwar, juan vazquez · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/fileformat/erdas_er_viewer_bof.rb
References (1)
Scores
EPSS
0.6542
EPSS Percentile
98.5%
Details
CWE
CWE-119
Status
published
Products (1)
hexagon/erdas_er_viewer
< 11.04
Published
May 05, 2013
Tracked Since
Feb 18, 2026