Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:32232
HistoryJun 21, 2015 - 12:00 a.m.

Buffer Overflow in My Wifi Router Software

2015-06-2100:00:00
vulners.com
13

Hi there,

I have seen a buffer overflow in My Wifi Router software version 1.0

The link of the software is available :- http://mywifirouter.software.informer.com/1.0/

Exploit :- After running the software you will see two places to enter details i.e "Hotspot Name" and "Password".

To exploit this issue you have to enter Hotspot name more than 30 characters. which will force the OS exception handler to kick in and close the software.

I have analyzed this issue via immunity debugger and found that EDI Register gets overwritten with A's which can be further used for exploitation

Thanks and Regards,
Sudhakar Dwivedi