Voicemod DLL Hijacking Vulnerability

2018.10.05
Risk: Low
Local: Yes
Remote: No
CVE: N/A
CWE: N/A

#################################### # Exploit Title: Voicemod DLL Hijacking Vulnerability # Date: 2018-10-05 # Vendor Homepage: https://www.voicemod.net/ # Software Link: https://www.voicemod.net/downloadVoicemod.php # Version: 1.2.1.5 # Exploit Author: nothing404.team # Tested on: Win 8.1 #################################### # Desctiption: Voice changers or voice modulators are devices or software programs capable of changing the tone and formant of an audio signal, which in most cases comes from a microphone. These professional devices can perform this task online, real time or processing an audio file (WAV or MP3) already recorded. It-s common for mic morphers to include sound effects that serve to mask a sound. # impact: Attacker can exploit the vulnerability to load a DLL file of the attacker's choosing that could execute arbitrary code. This may help attacker to Successful exploits the system if user creates shell as a DLL. # exploit: Create malicious dll file and save it as 'VoicemodSDKDotNET.dll' in your Voicemod Desktop/lib directory then execute voicemod. now malicious dll file gets executed. #################################### # ! We Are Nothing ! # nothing404.team@gmail.com ####################################


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2018, cxsecurity.com

 

Back to Top