cve/2017/CVE-2017-6953.md

18 lines
702 B
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2017-6953](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-6953)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Gemalto SmartDiag Diagnosis Tool v2.5 has a stack-based Buffer Overflow with SEH Overwrite via long "Register a new card" input fields. There may be a risk of local code execution with untrusted input to SmartDiag.exe or SymDiag.exe.
### POC
#### Reference
- https://www.exploit-db.com/exploits/41972/
#### Github
- https://github.com/ARPSyndicate/cvemon