CVE-2018-25344
10-Strike Network Inventory Explorer 취약점
10-Strike Network Inventory Explorer 8.54 contains a stack-based buffer overflow vulnerability in the registration key input field that allows local attackers to execute arbitrary code by triggering a structured exception handler overwrite. Attackers can craft a malicious registration key string with 4188 bytes of padding followed by SEH chain values and shellcode, then paste it into the registration dialog to achieve code execution with application privileges.
- 대응 우선순위
- 점검
- CVSS
- 8.6
- EPSS
- 0.16% 백분위 5.87% · 2026.08.05 기준
- CISA KEV
- 미등록
- 조치 기한
- -
- 공개일
- 2026.05.24