CVE-2018-25376
HIGHSocusoft 3GP Photo Slideshow 8.05 Buffer Overflow SEH
Title source: cnaExploitation Summary
EIP tracks 1 public exploit for CVE-2018-25376. PoCs published by Shubham Singh.
AI-analyzed exploit summary This exploit demonstrates a buffer overflow vulnerability in Socusoft 3GP Photo Slideshow 8.05, leveraging SEH overwrite to execute a reverse shell payload. The exploit constructs a malicious input file that triggers the overflow when pasted into the registration fields.
Description
Socusoft 3GP Photo Slideshow 8.05 contains a buffer overflow vulnerability in the registration dialog that allows local attackers to execute arbitrary code by exploiting structured exception handling. Attackers can craft malicious input in the Registration Name and Registration Key fields to overwrite the SEH chain and execute shellcode for reverse shell access.
Exploits (1)
This exploit demonstrates a buffer overflow vulnerability in Socusoft 3GP Photo Slideshow 8.05, leveraging SEH overwrite to execute a reverse shell payload. The exploit constructs a malicious input file that triggers the overflow when pasted into the registration fields.
References (3)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H