Remote Code Execution Vulnerability in Scalabium dBase Viewer 2.6 (Build 5.751) via Crafted DBF File

Remote Code Execution Vulnerability in Scalabium dBase Viewer 2.6 (Build 5.751) via Crafted DBF File

CVE-2021-35297 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Scalabium dBase Viewer version 2.6 (Build 5.751) is vulnerable to remote code execution via a crafted DBF file that triggers a buffer overflow. An attacker can use the Structured Exception Handler (SEH) records and redirect execution to attacker-controlled code.

Learn more about our Web Application Penetration Testing UK.