Exploitation Summary
EIP tracks 1 public exploit for CVE-2018-25260. PoCs published by bzyo.
AI-analyzed exploit summary This exploit demonstrates a buffer overflow vulnerability in MAGIX Music Editor 3.1 by overwriting the SEH handler and executing a calc.exe payload via a crafted text file loaded into the FreeDB Proxy Options field.
Description
MAGIX Music Editor 3.1 contains a buffer overflow vulnerability in the FreeDB Proxy Options dialog that allows local attackers to execute arbitrary code by exploiting structured exception handling. Attackers can craft a malicious payload, paste it into the Server field via the CD menu's FreeDB Proxy Options, and trigger code execution when settings are accepted.
Exploits (1)
This exploit demonstrates a buffer overflow vulnerability in MAGIX Music Editor 3.1 by overwriting the SEH handler and executing a calc.exe payload via a crafted text file loaded into the FreeDB Proxy Options field.
References (4)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H