CVE-2018-25345

HIGH

10-Strike Network Scanner 3.0 Local Buffer Overflow SEH

Title source: cna
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2018-25345. PoCs published by Hashim Jawad.

AI-analyzed exploit summary This exploit demonstrates a local buffer overflow vulnerability in 10-Strike Network Scanner 3.0, leveraging SEH overwrite to achieve remote code execution via a bind shell payload. The exploit bypasses SafeSEH protections and uses a custom ROP chain to redirect execution flow.

Description

10-Strike Network Scanner 3.0 contains a local buffer overflow vulnerability in the host name field that allows attackers to bypass SafeSEH protections and execute arbitrary code. Attackers can craft a malicious payload in the host name or address field and trigger the vulnerability through the Trace route or System information functions to achieve code execution.

Exploits (1)

exploitdb WORKING POC
by Hashim Jawad · pythonlocalwindows_x86
https://www.exploit-db.com/exploits/44841

This exploit demonstrates a local buffer overflow vulnerability in 10-Strike Network Scanner 3.0, leveraging SEH overwrite to achieve remote code execution via a bind shell payload. The exploit bypasses SafeSEH protections and uses a custom ROP chain to redirect execution flow.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: 10-Strike Network Scanner 3.0
No auth needed
Prerequisites: Copy the contents of Evil.txt into the 'Host name or address' field and trigger the vulnerability via 'Trace route...'
devstral-2 · analyzed May 24, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit exploit
ExploitDB-44841
https://www.exploit-db.com/exploits/44841
Product product
Official Product Homepage
https://www.10-strike.com/
Third Party Advisory third-party-advisory
VulnCheck Advisory: 10-Strike Network Scanner 3.0 Local Buffer Overflow SEH
https://www.vulncheck.com/advisories/10-strike-network-scanner-local-buffer-overflow-seh

Scores

CVSS v3 8.4
EPSS 0.0020
EPSS Percentile 9.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-120
Status published
Products (1)
10-Strike/Network Scanner 3.0
Published May 23, 2026
Tracked Since May 24, 2026