7.5
CVSSv2

CVE-2014-8386

Published: 20/01/2015 Updated: 21/01/2015
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple stack-based buffer overflows in Advantech AdamView 4.3 and previous versions allow remote malicious users to execute arbitrary code via a crafted (1) display properties or (2) conditional bitmap parameter in a GNI file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

advantech adamview

Exploits

#!/usr/bin/env ruby # Exploit Title: Advantech AdamView (gni) SEH Buffer Overflow # Date: Dec 09 2014 # Vulnerability Discovery: Daniel Kazimirow and Fernando Paez - Core Security # Exploit Author: Muhamad Fadzil Ramli <mind1355[at]gmailcom> # Software Link: downloadtadvantechcom/download/downloadsraspx?File_Id=1-179WGW # Version: ...
FastStone MaxView version 28 local stack overflow proof of concept exploit ...