Public exploit · Metasploit Module

PcVue 10.0 SV.UIGrdCtrl.1 'LoadObject()/SaveObject()' Trusted DWORD Vulnerability

Published Rocco Calvi

Exploit summary

This module exploits a function pointer control within SVUIGrd.ocx of PcVue 10.0. By setting a DWORD value for the SaveObject() or LoadObject() methods, an attacker can overwrite a function pointer and execute arbitrary code.

Source & references