Two high-severity vulnerabilities, CVE-2018-25265 and CVE-2018-25268, were documented for LanSpy 2.0.1.159, affecting the application's scan functionality and exposing users to local buffer overflow attacks. The flaws were classified as CWE-787 and can let an attacker trigger memory corruption by supplying oversized input in the scan section or scan field, causing application crashes and creating a path to arbitrary code execution.
The published details indicate that CVE-2018-25265 can be exploited through structured exception handling (SEH), including egghunter-based shellcode discovery and controlled jumps, while CVE-2018-25268 allows instruction pointer overwrite with a payload consisting of 688 bytes of padding followed by 4 bytes of attacker-controlled data. Both entries were assigned high-impact CVSS v3.1 and CVSS v4.0 severity metrics, and the records reference material from LizardSystems, Exploit-DB, and VulnCheck.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
The CVE records were published with CWE-787 classification, CVSS v3.1 and v4.0 severity vectors, and references to LizardSystems, Exploit-DB, and VulnCheck. The disclosures document technical exploitation details such as SEH abuse, egghunter-based shellcode discovery, and instruction-pointer overwrite via oversized input.
Two local buffer overflow flaws affecting LanSpy 2.0.1.159, later tracked as CVE-2018-25265 and CVE-2018-25268, were received by disclosure@vulncheck.com. The entries describe memory corruption in the scan functionality that could allow crashes and possible arbitrary code execution.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.