##########################
# Exploit Title: EditPlus DLL hijacking Vulnerability
# Software Link: https://www.editplus.com/ftp.php?n=epp430_64bit.exe
# https://www.youtube.com/channel/UCyngNTHNoRLQkWRn3bQjpJQ
# Discovered By: Mr.voltage
# Version: 4.3
# Vendor Homepage : https://www.editplus.com/
# Tested on : windows
##########################
+--------------------------+
+ Vulnerable DLL :
+ eppshell.dll
+ eppshell64.dll
+--------------------------+
product
+-------+
EditPlus is a text editor for Windows with built-in FTP, FTPS and sftp capabilities.
While it can serve as a good Notepad replacement, it also offers many powerful features for Web page authors and programmers.
+-------+
Make Malicious dll.
Exploit:
Place a dummy eppshell.dll or eppshell64.dll file with the malicious dll . When the file is opened you will get shell.
###################################
#Thanks to : matin
# Discovered By: Mr.voltage
# skype: mr.voltage@yahoo.com