Exploitation Summary
EIP tracks 1 public exploit for CVE-2000-0350. PoCs published by rain forest puppy.
AI-analyzed exploit summary This exploit leverages the default credentials ('iceman' with no password) in ICECap Manager to send false alerts or execute arbitrary commands via the JET Engine 3.5 vulnerability. It crafts a malicious HTTP POST request to port 8082, embedding a command to copy the SAM file to a writable directory.
Description
A debugging feature in NetworkICE ICEcap 2.0.23 and earlier is enabled, which allows a remote attacker to bypass the weak authentication and post unencrypted events.
Exploits (1)
This exploit leverages the default credentials ('iceman' with no password) in ICECap Manager to send false alerts or execute arbitrary commands via the JET Engine 3.5 vulnerability. It crafts a malicious HTTP POST request to port 8082, embedding a command to copy the SAM file to a writable directory.