9.3
CVSSv2

CVE-2009-1674

Published: 18/05/2009 Updated: 29/09/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in Microchip MPLAB IDE 8.30 allows user-assisted remote malicious users to execute arbitrary code via a long .cof pathname in a [TOOL_SETTINGS] section in a .mcp file, possibly a related issue to CVE-2009-1608.

Vulnerable Product Search on Vulmon Subscribe to Product

microchip mplab ide 8.30

Exploits

# usage: mplabpy then open the project file :) # Download : ww1microchipcom/downloads/en/DeviceDoc/MPLAB_830zip (nadli chouk fi rassi :p) print "**************************************************************************" print " MPLAB IDE 830 (mcp) Universal Seh Overwrite Exploit\n" print " Refer : Secunia advisory (35054)\n" print " ...