Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5qx9-7gxr-8h58

Опубликовано: 31 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.6
CVSS3: 8.4

Описание

Simple Startup Manager 1.17 contains a local buffer overflow vulnerability that allows attackers to execute arbitrary code by overwriting memory through the 'File' input parameter. Attackers can craft a malicious payload with 268 bytes to trigger code execution, bypassing DEP and overwriting memory addresses to launch calc.exe.

Simple Startup Manager 1.17 contains a local buffer overflow vulnerability that allows attackers to execute arbitrary code by overwriting memory through the 'File' input parameter. Attackers can craft a malicious payload with 268 bytes to trigger code execution, bypassing DEP and overwriting memory addresses to launch calc.exe.

EPSS

Процентиль: 3%
0.00017
Низкий

8.6 High

CVSS4

8.4 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 8.4
nvd
9 дней назад

Simple Startup Manager 1.17 contains a local buffer overflow vulnerability that allows attackers to execute arbitrary code by overwriting memory through the 'File' input parameter. Attackers can craft a malicious payload with 268 bytes to trigger code execution, bypassing DEP and overwriting memory addresses to launch calc.exe.

EPSS

Процентиль: 3%
0.00017
Низкий

8.6 High

CVSS4

8.4 High

CVSS3

Дефекты

CWE-787