CVE-2001-1112
EFTP 2.0.7.337 - Remote Code Execution via .lnk File Upload
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2001-1112. PoCs published by byterage.
AI-analyzed exploit summary This exploit targets a buffer overflow in EFTP Version 2.0.7.337 by uploading a malicious .lnk file, which triggers a bindshell on port 6968 when an LS command is issued. The shellcode is XOR-encoded and leverages LoadLibrary and GetProcAddress for dynamic API resolution.
Description
Buffer overflow in EFTP 2.0.7.337 allows remote attackers to execute arbitrary code by uploading a .lnk file containing a large number of characters.
Exploits (1)
This exploit targets a buffer overflow in EFTP Version 2.0.7.337 by uploading a malicious .lnk file, which triggers a bindshell on port 6968 when an LS command is issued. The shellcode is XOR-encoded and leverages LoadLibrary and GetProcAddress for dynamic API resolution.