Buffer Overflow in Sysinternals Process Explorer 9.23: Arbitrary Code Execution via Long CompanyName Field

Buffer Overflow in Sysinternals Process Explorer 9.23: Arbitrary Code Execution via Long CompanyName Field

CVE-2005-2679 · HIGH Severity

AV:N/AC:L/AU:N/C:C/I:C/A:C

Buffer overflow in Sysinternals Process Explorer 9.23, and other versions before 9.25, allows local users to execute arbitrary code via a long CompanyName field in the VersionInfo information in a running process.

Learn more about our Internal Network Penetration Testing.