CVE-2018-25345

10-Strike Network Scanner 3.0 contains a local buffer overflow vulnerability in the host name field that allows attackers to bypass SafeSEH protections and execute arbitrary code. Attackers can craft a malicious payload in the host name or address field and trigger the vulnerability through the Trace route or System information functions to achieve code execution.
Configurations

No configuration.

History

20 Jul 2026, 20:10

Type Values Removed Values Added
Summary
  • (es) 10-Strike Network Scanner 3.0 contiene una vulnerabilidad de desbordamiento de búfer local en el campo de nombre de host que permite a los atacantes eludir las protecciones SafeSEH y ejecutar código arbitrario. Los atacantes pueden crear una carga útil maliciosa en el campo de nombre de host o dirección y activar la vulnerabilidad a través de las funciones Trace route o System information para lograr la ejecución de código.

23 May 2026, 19:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-23 19:16

Updated : 2026-07-20 20:10


NVD link : CVE-2018-25345

Mitre link : CVE-2018-25345

CVE.ORG link : CVE-2018-25345


JSON object : View

Products Affected

No product.

CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')