CVE-2005-2668
Computer Associates CAM/CAFT <1.11 Build 29_13 - Buffer Overflow
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2005-2668.
PoCs published by Metasploit, hdm, including Metasploit module exploits/windows/unicenter/cam_log_security.
AI-analyzed exploit summary This Metasploit module exploits a stack buffer overflow in the CA CAM service's log_security() function by sending a maliciously crafted packet with a long parameter. It targets multiple Windows versions and achieves remote code execution via a return-to-ESI technique.
Description
Multiple buffer overflows in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_13 allow remote attackers to execute arbitrary code via unknown vectors.
Exploits (2)
This Metasploit module exploits a stack buffer overflow in the CA CAM service's log_security() function by sending a maliciously crafted packet with a long parameter. It targets multiple Windows versions and achieves remote code execution via a return-to-ESI technique.
This Metasploit module exploits a stack buffer overflow in the CA CAM service's log_security() function by sending a crafted TCP packet with a long parameter. It targets multiple Windows versions and includes return addresses for various DLLs to achieve remote code execution.