A Buffer Overflow exists within ERDAS ER Viewer due to a boundary error within the rf_report_error() function in (ermapper_u.dll) when parsing a specially crafted ERS file. This module runs a malicious web site on the Core Impact Console and waits for an unsuspecting user to trigger the exploit by connecting to the web site.
CVE Link
Exploit Platform
Exploit Type
Product Name