CVE-2013-3928
Chasys Draw IES < 4.11.02 - Remote Code Execution via Crafted BMP File
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2013-3928.
PoCs published by Metasploit, Christopher Gabriel, Longinos Recuero Bustos, Javier \, , # PoC, including Metasploit module exploits/windows/fileformat/chasys_draw_ies_bmp_bof.
AI-analyzed exploit summary This Metasploit module exploits a stack-based buffer overflow in Chasys Draw IES 4.10.01 by crafting a malicious BMP file. The vulnerability is triggered by manipulating the Width, Planes, and BitCount fields in the BMP header, leading to arbitrary code execution.
Description
Stack-based buffer overflow in the ReadFile function in flt_BMP.dll in Chasys Draw IES before 4.11.02 allows remote attackers to execute arbitrary code via crafted biPlanes and biBitCount fields in a BMP file.
Exploits (2)
This Metasploit module exploits a stack-based buffer overflow in Chasys Draw IES 4.10.01 by crafting a malicious BMP file. The vulnerability is triggered by manipulating the Width, Planes, and BitCount fields in the BMP header, leading to arbitrary code execution.
This Metasploit module exploits a stack-based buffer overflow in Chasys Draw IES (CVE-2013-3928) by crafting a malicious BMP file. The exploit triggers arbitrary code execution via a JMP ESP instruction in flt_BMP.dll when the file is parsed.