9.3
CVSSv2

CVE-2009-1608

Published: 11/05/2009 Updated: 10/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple buffer overflows in Microchip MPLAB IDE 8.30 and possibly earlier versions allow user-assisted remote malicious users to execute arbitrary code via a .MCP project file with long (1) FILE_INFO, (2) CAT_FILTERS, and possibly other fields.

Vulnerable Product Search on Vulmon Subscribe to Product

microchip mplab ide 8.30

Exploits

# usage: mplabpy then open the project file :) # Download : ww1microchipcom/downloads/en/DeviceDoc/MPLAB_830zip (nadli chouk fi rassi :p) print "**************************************************************************" print " MPLAB IDE 830 (mcp) Universal Seh Overwrite Exploit\n" print " Refer : Secunia advisory (35054)\n" print " ...