CVE-2023-54330

Inbit Messenger versions 4.6.0 to 4.9.0 contain a remote stack-based buffer overflow vulnerability that allows unauthenticated attackers to execute arbitrary code by sending malformed network packets. Attackers can craft a specially designed payload targeting the messenger's network handler to overwrite the Structured Exception Handler (SEH) and execute shellcode on vulnerable Windows systems.
Configurations

Configuration 1 (hide)

cpe:2.3:a:inbit:inbit_messenger:*:*:*:*:*:*:*:*

History

17 Jun 2026, 06:47

Type Values Removed Values Added
Summary
  • (es) Las versiones 4.6.0 a 4.9.0 de Inbit Messenger contienen una vulnerabilidad remota de desbordamiento de búfer basado en pila que permite a atacantes no autenticados ejecutar código arbitrario enviando paquetes de red malformados. Los atacantes pueden crear una carga útil especialmente diseñada dirigida al controlador de red del mensajero para sobrescribir el Structured Exception Handler (SEH) y ejecutar shellcode en sistemas Windows vulnerables.

30 Jan 2026, 15:48

Type Values Removed Values Added
First Time Inbit
Inbit inbit Messenger
CPE cpe:2.3:a:inbit:inbit_messenger:*:*:*:*:*:*:*:*
CWE CWE-787
References () https://github.com/a-rey/exploits/blob/main/writeups/Inbit_Messenger/v4.6.0/writeup.md - () https://github.com/a-rey/exploits/blob/main/writeups/Inbit_Messenger/v4.6.0/writeup.md - Exploit, Third Party Advisory
References () https://web.archive.org/web/20200122082432/https://www.softsea.com/review/Inbit-Messenger-Basic-Edition.html - () https://web.archive.org/web/20200122082432/https://www.softsea.com/review/Inbit-Messenger-Basic-Edition.html - Product
References () https://www.exploit-db.com/exploits/51126 - () https://www.exploit-db.com/exploits/51126 - Exploit, Third Party Advisory
References () https://www.vulncheck.com/advisories/inbit-messenger-unauthenticated-remote-seh-overflow - () https://www.vulncheck.com/advisories/inbit-messenger-unauthenticated-remote-seh-overflow - Third Party Advisory

14 Jan 2026, 20:16

Type Values Removed Values Added
References () https://github.com/a-rey/exploits/blob/main/writeups/Inbit_Messenger/v4.6.0/writeup.md - () https://github.com/a-rey/exploits/blob/main/writeups/Inbit_Messenger/v4.6.0/writeup.md -

13 Jan 2026, 23:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-13 23:16

Updated : 2026-06-17 06:47


NVD link : CVE-2023-54330

Mitre link : CVE-2023-54330

CVE.ORG link : CVE-2023-54330


JSON object : View

Products Affected

inbit

  • inbit_messenger
CWE
CWE-121

Stack-based Buffer Overflow

CWE-787

Out-of-bounds Write