CVE-2003-1030

DameWare Mini Remote Control < 3.73 - Unauthenticated Remote Code Execution via Long Pre-Authentication Request

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 4 public exploits for CVE-2003-1030. PoCs published by kralor, Adik, ash.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in DameWare Mini Remote Control Server versions prior to 3.73. It sends a maliciously crafted packet to trigger remote code execution, with shellcode that connects back to an attacker-controlled host.

Description

Buffer overflow in DameWare Mini Remote Control before 3.73 allows remote attackers to execute arbitrary code via a long pre-authentication request to TCP port 6129.

Exploits (4)

exploitdb WORKING POC VERIFIED
by kralor · cremotewindows
https://www.exploit-db.com/exploits/23437

This exploit targets a buffer overflow vulnerability in DameWare Mini Remote Control Server versions prior to 3.73. It sends a maliciously crafted packet to trigger remote code execution, with shellcode that connects back to an attacker-controlled host.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: DameWare Mini Remote Control Server < v3.73
No auth needed
Prerequisites: Network access to the target system · DameWare Mini Remote Control Server running and accessible
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by kralor · cremotewindows
https://www.exploit-db.com/exploits/23436

This exploit targets a buffer overflow vulnerability in DameWare Mini Remote Control Server versions prior to 3.73. It sends a maliciously crafted packet to trigger the overflow and execute shellcode, which establishes a reverse shell connection to the attacker's specified IP and port.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: DameWare Mini Remote Control Server < v3.73
No auth needed
Prerequisites: Network access to the target system · Target system running vulnerable DameWare Mini Remote Control Server
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by Adik · cremotewindows
https://www.exploit-db.com/exploits/23435

This exploit targets a stack overflow vulnerability in DameWare Mini Remote Control Server (CVE-2003-1030) by sending a maliciously crafted packet to trigger a reverse shell. It includes shellcode for a reverse connection and handles multiple Windows versions with specific return addresses.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: DameWare Mini Remote Control Server <= 3.72.0.0
No auth needed
Prerequisites: Network access to the target · Target running vulnerable DameWare Mini Remote Control Server
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by ash · clocalwindows
https://www.exploit-db.com/exploits/79

This exploit leverages a shatter attack vulnerability in DameWare Mini Remote Control Server prior to version 3.71.0.0 to achieve local privilege escalation by injecting shellcode into the target process via window message manipulation.

Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target: DameWare Mini Remote Control Server < 3.71.0.0
No auth needed
Prerequisites: DameWare Mini Remote Control Server About dialogue must be open · Local access to the target system
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (7)

Core 7
Core References
Various Sources x_refsource_misc
http://sh0dan.org/files/dwmrcs372.txt
Exploit, Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/9213
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/14001
Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/909678
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=107187110617266&w=2
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=107152094119279&w=2
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=107392603615840&w=2

Scores

EPSS 0.1727
EPSS Percentile 96.7%

Details

Status published
Products (3)
dameware_development/mini_remote_control_server 3.70_.0.0
dameware_development/mini_remote_control_server 3.71_.0.0
dameware_development/mini_remote_control_server 3.72_.0.0
Published Feb 17, 2004
Tracked Since Feb 18, 2026