Record summary

CVE-2001-0876 has a selected CVSS score of 7.5; EIP currently links 2 catalogued exploits.

Description

Buffer overflow in Universal Plug and Play (UPnP) on Windows 98, 98SE, ME, and XP allows remote attackers to execute arbitrary code via a NOTIFY directive with a long Location URL.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
2

Proofs of concept

2

Catalogued exploits

ExploitDBMicrosoft Windows 98/XP/ME - UPnP NOTIFY Buffer Overflow (1)ExploitDB exploitby Gabriel MaggiottiNot analyzed1 file
ExploitDB

PoC details
ExploitDBMicrosoft Windows 98/XP/ME - UPnP NOTIFY Buffer Overflow (2)ExploitDB exploitby JOCANORNot analyzed1 file
ExploitDB

PoC details

References

9