Frigate professional 3.36.0.9 find computer local buffer overflow (seh) (poc) Vulnerability / Exploit
/
/
/
Exploits / Vulnerability Discovered : 2020-06-11 |
Type : local |
Platform : windows
This exploit / vulnerability Frigate professional 3.36.0.9 find computer local buffer overflow (seh) (poc) is for educational purposes only and if it is used you will do on your own risk!
[+] Code ...
# Exploit Title: Frigate Professional 3.36.0.9 - 'Find Computer' Local Buffer Overflow (SEH) (PoC)
# Vendor Homepage: http://www.frigate3.com/
# Software Link Download: http://www.frigate3.com/download/frigate3_pro.exe
# Exploit Author: Paras Bhatia
# Discovery Date: 2020-06-04
# Vulnerable Software: Frigate Professional
# Version: 3.36.0.9
# Vulnerability Type: Local Buffer Overflow
# Tested on: Windows 7 Ultimate Service Pack 1 (32 bit - English)
#Steps to Produce the Crash:
# 1.- Run python code: FrigateLCE.py
# 2.- Copy content to clipboard
# 3.- Turn off DEP for Frigate3.exe
# 4.- Open "Frigate3.exe"
# 5.- Go to "Disk" > Find Computer
# 6.- Paste ClipBoard into the "Computer Name:" field
# 7.- Click on OK
# 8.- Calc.exe runs