Record summary

CVE-2019-16724 has a selected CVSS score of 9.8 (critical); EIP currently links 2 catalogued exploits and 1 repository PoC.

Description

File Sharing Wizard 1.5.0 allows a remote attacker to obtain arbitrary code execution by exploiting a Structured Exception Handler (SEH) based buffer overflow in an HTTP POST parameter, a similar issue to CVE-2010-2330 and CVE-2010-2331.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
2
Repository PoCs
1

Proofs of concept

3

Catalogued exploits

ExploitDBFile Sharing Wizard 1.5.0 - POST SEH OverflowExploitDB exploitby x00pwnNot analyzed1 file
ExploitDB

PoC details
MetasploitFile Sharing Wizard - POST SEH OverflowMetasploit exploitby Dean Welch <dean_welch@rapid7.com> +1 moreNot analyzed1 file

Ruby

Metasploit

PoC details

Repository PoCs

GitHubnanabingies/CVE-2019-16724Repository PoCby nanabingiesStars: 2Not analyzed2 files

2.4 KiB

GitHub

PoC details

References

4