CVE-2017-20225
CRITICALTiEmu 2.08 Stack-Based Buffer Overflow Vulnerability
Title source: cnaExploitation Summary
EIP tracks 1 public exploit for CVE-2017-20225. PoCs published by Juan Sacco.
AI-analyzed exploit summary This exploit demonstrates a stack-based buffer overflow in TiEmu 2.08 and prior, leveraging a SEH overwrite and ROP chain to execute arbitrary shellcode. The payload is designed to achieve remote code execution by bypassing DEP via VirtualProtect.
Description
TiEmu 2.08 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by exploiting inadequate boundary checks on user-supplied input. Attackers can trigger the overflow through command-line arguments passed to the application, leveraging ROP gadgets to bypass protections and execute shellcode in the application context.
Exploits (1)
This exploit demonstrates a stack-based buffer overflow in TiEmu 2.08 and prior, leveraging a SEH overwrite and ROP chain to execute arbitrary shellcode. The payload is designed to achieve remote code execution by bypassing DEP via VirtualProtect.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H