Exploitation Summary
EIP tracks 2 public exploits for CVE-2004-1286. PoCs published by Bartlomiej Sieka.
AI-analyzed exploit summary This exploit targets a buffer overflow in NapShare 1.2 by sending a maliciously crafted Gnutella server response. It leverages the 'extern' filter in the automation feature to trigger arbitrary command execution via a system(3) call.
Description
Buffer overflow in the auto_filter_extern function in auto.c for NapShare 1.2, with the extern filter enabled, allows remote attackers to execute arbitrary code via a crafted gnutella response.
Exploits (2)
This exploit targets a buffer overflow in NapShare 1.2 by sending a maliciously crafted Gnutella server response. It leverages the 'extern' filter in the automation feature to trigger arbitrary command execution via a system(3) call.
This exploit targets a buffer overflow vulnerability in NapShare 1.2 by sending a maliciously crafted Gnutella server response. It includes shellcode to create a file named 'EXPLOIT' as a proof of arbitrary code execution.