CVE-2018-25217
HIGHPDF Explorer 1.5.66.2 Structured Exception Handler Local Code Execution
Title source: cnaExploitation Summary
EIP tracks 1 public exploit for CVE-2018-25217. PoCs published by Achilles.
AI-analyzed exploit summary This exploit leverages a SEH (Structured Exception Handler) overflow in PDF Explorer 1.5.66.2 to achieve arbitrary code execution. The payload overwrites the SEH chain with a custom handler and includes shellcode generated by msfvenom to spawn a calculator.
Description
PDF Explorer 1.5.66.2 contains a structured exception handler (SEH) overflow vulnerability that allows local attackers to execute arbitrary code by overwriting SEH records with malicious data. Attackers can craft a payload with buffer overflow, NSEH jump, and ROP gadget chains that execute when the Custom fields settings dialog processes the malicious input in the Label field.
Exploits (1)
This exploit leverages a SEH (Structured Exception Handler) overflow in PDF Explorer 1.5.66.2 to achieve arbitrary code execution. The payload overwrites the SEH chain with a custom handler and includes shellcode generated by msfvenom to spawn a calculator.
References (4)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H