CVE-2019-9896
HIGHPuTTY < 0.71 - Uncontrolled Search Path Element via Help File
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2019-9896. PoCs published by yasinyilmaz.
AI-analyzed exploit summary This PoC demonstrates a CHM hijacking vulnerability in PuTTY up to version 0.70, where a malicious CHM file can execute arbitrary code via embedded HTML objects and JavaScript. The exploit leverages HTML Help Workshop to create a malicious CHM file that spawns a reverse shell when opened.
Description
In PuTTY versions before 0.71 on Windows, local attackers could hijack the application by putting a malicious help file in the same directory as the executable.
Exploits (1)
This PoC demonstrates a CHM hijacking vulnerability in PuTTY up to version 0.70, where a malicious CHM file can execute arbitrary code via embedded HTML objects and JavaScript. The exploit leverages HTML Help Workshop to create a malicious CHM file that spawns a reverse shell when opened.
References (4)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H