Exploitation Summary
EIP tracks 3 public exploits for CVE-2002-2226.
PoCs published by Metasploit, Aviram Jenik, including Metasploit module exploits/windows/tftp/tftpd32_long_filename.
AI-analyzed exploit summary This Metasploit module exploits a stack buffer overflow in TFTPD32 <= 2.21 via a UDP request with an overly long filename, leading to arbitrary code execution. It includes target-specific return addresses for various Windows versions.
Description
Buffer overflow in tftpd of TFTP32 2.21 and earlier allows remote attackers to execute arbitrary code via a long filename argument.
Exploits (3)
This Metasploit module exploits a stack buffer overflow in TFTPD32 <= 2.21 via a UDP request with an overly long filename, leading to arbitrary code execution. It includes target-specific return addresses for various Windows versions.
This exploit targets a buffer overflow vulnerability in Tftpd32 by sending a maliciously crafted UDP packet with an overly long filename. The payload includes shellcode to execute 'notepad.exe' as a demonstration of arbitrary code execution.
This Metasploit module exploits a stack buffer overflow in TFTPD32 version 2.21 and prior by sending a UDP request with an overly long filename, leading to arbitrary code execution. The exploit includes specific return addresses for various Windows versions and a payload delivery mechanism.