Public exploit · Metasploit Module

eSignal and eSignal Pro File Parsing Buffer Overflow in QUO

Published Rocco Calvi

Exploit summary

eSignal and eSignal Pro versions 10.6.2425.1208 and earlier are unable to safely handle QUO, SUM and POR files. The vulnerability allows arbitrary code execution through a specially crafted file. Exploitation uses an egghunter technique and may take several seconds.

Source & references