Exploitation Summary
EIP tracks 1 public exploit for CVE-2018-10018. PoCs published by Filipe Xavier Oliveira.
AI-analyzed exploit summary This exploit demonstrates a buffer overflow vulnerability in G DATA TOTAL SECURITY v25.4.0.3 via the GDASPAMLib.AntiSpam ActiveX control. The PoC triggers the overflow by passing an excessively long string to the IsBlackListed method.
Description
The GDASPAMLib.AntiSpam ActiveX control ASK\GDASpam.dll in G DATA Total Security 25.4.0.3 has a buffer overflow via a long IsBlackListed argument.
Exploits (1)
This exploit demonstrates a buffer overflow vulnerability in G DATA TOTAL SECURITY v25.4.0.3 via the GDASPAMLib.AntiSpam ActiveX control. The PoC triggers the overflow by passing an excessively long string to the IsBlackListed method.
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H