SC v7.16 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying oversized input that exceeds buffer boundaries. Attackers can craft malicious input strings exceeding 1052 bytes to overwrite the instruction pointer and execute shellcode in the application context.
Metrics
Affected Vendors & Products
References
History
Mon, 30 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 30 Mar 2026 07:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sc
Sc sc |
|
| Vendors & Products |
Sc
Sc sc |
Sat, 28 Mar 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SC v7.16 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying oversized input that exceeds buffer boundaries. Attackers can craft malicious input strings exceeding 1052 bytes to overwrite the instruction pointer and execute shellcode in the application context. | |
| Title | SC v7.16 Stack-Based Buffer Overflow Remote Code Execution | |
| Weaknesses | CWE-787 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-03-28T11:58:14.720Z
Updated: 2026-03-30T14:41:48.584Z
Reserved: 2026-03-28T11:48:03.595Z
Link: CVE-2018-25222
Updated: 2026-03-30T14:41:45.119Z
Status : Awaiting Analysis
Published: 2026-03-28T12:16:02.983
Modified: 2026-03-30T13:26:07.647
Link: CVE-2018-25222
No data.