


Perceptive Security
SOC/SIEM Consultancy

Iperius Backup 5.8.1 contains a local buffer overflow vulnerability in the structured exception handling (SEH) mechanism that allows local attackers to execute …
Published:
21 april 2026 om 22:00:00
Alert date:
22 april 2026 om 22:11:22
Source:
nvd.nist.gov
Enterprise Applications
CVE-2018-25261 affects Iperius Backup version 5.8.1, containing a local buffer overflow vulnerability in the structured exception handling (SEH) mechanism. Local attackers can exploit this by supplying a malicious file path when creating a backup job. The vulnerability is triggered through a crafted payload in the external file location field. When the backup job executes, it causes a buffer overflow that enables arbitrary code execution. The exploit runs with application privileges, allowing attackers to execute malicious code on the affected system.
Technical details
Mitigation steps:
Affected products:
Iperius Backup
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2018-25261
https://www.exploit-db.com/exploits/46059
https://www.iperiusbackup.com
https://www.vulncheck.com/advisories/iperius-backup-local-buffer-overflow-seh
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
