PT-2024-15713 · Extplorer · Extplorer
Rafael Pedrero
·
Published
2024-01-17
·
Updated
2024-01-24
·
CVE-2024-0645
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Explorer++ version 1.3.5.531
Description
A local attacker could execute arbitrary code via a long filename argument by monitoring Structured Exception Handler (SEH) records. This issue allows for the execution of arbitrary code, potentially leading to system compromise.
Recommendations
For version 1.3.5.531, consider applying a patch or update when available to fix the buffer overflow vulnerability. As a temporary workaround, consider restricting the use of long filename arguments to minimize the risk of exploitation.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Extplorer