Total Commander FileInfo 2.09 Plugin - Multiple PE File Denial of Service Vulnerabilities



EKU-ID: 35549 CVE: CVE-2007-4463;OSVDB-46835 OSVDB-ID:
Author: Gynvael Coldwind Published: 2007-07-20 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/25373/info

The FileInfo plugin for Total Commander is prone to multiple PE file denial-of-service vulnerabilities because the plugin fails to properly handle malformed input.

Successfully exploiting these issues allows remote attackers to crash the affected application.

FileInfo 2.09 is vulnerable; other versions may also be affected.

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/30512.exe