CVE-2000-0472
INN 2.2.2 - Remote Code Execution via Long Message ID in Cancel Request
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2000-0472. PoCs published by Michal Zalewski.
AI-analyzed exploit summary This exploit targets a buffer overflow in INN (InterNetNews) 2.2.2 via a malformed cancel request in the 'control' newsgroup. It leverages a stack-based overflow to execute arbitrary shellcode, achieving remote code execution as the 'news' user.
Description
Buffer overflow in innd 2.2.2 allows remote attackers to execute arbitrary commands via a cancel request containing a long message ID.
Exploits (1)
This exploit targets a buffer overflow in INN (InterNetNews) 2.2.2 via a malformed cancel request in the 'control' newsgroup. It leverages a stack-based overflow to execute arbitrary shellcode, achieving remote code execution as the 'news' user.