CVE-2024-0645

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
17/01/2024
Last modified:
24/01/2024

Description

Buffer overflow vulnerability in Explorer++ affecting version 1.3.5.531. A local attacker could execute arbitrary code via a long filename argument by monitoring Structured Exception Handler (SEH) records.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:explorerplusplus:explorer\+\+:1.3.5.531:*:*:*:*:*:*:*