Exploitation Summary
EIP tracks 2 public exploits for CVE-2005-4734.
PoCs published by Metasploit, hdm, including Metasploit module exploits/windows/isapi/rsa_webagent_redirect.
AI-analyzed exploit summary This is a Metasploit module exploiting a stack buffer overflow in RSA WebAgent for IIS via a maliciously crafted 'Redirect' query parameter. It targets specific versions of RSA WebAgent (5.2/5.3) on various Windows platforms, leveraging SEH overwrites for code execution.
Description
Stack-based buffer overflow in IISWebAgentIF.dll in RSA Authentication Agent for Web (aka SecurID Web Agent) 5.2 and 5.3 for IIS allows remote attackers to execute arbitrary code via a long url parameter in the Redirect method.
Exploits (2)
This is a Metasploit module exploiting a stack buffer overflow in RSA WebAgent for IIS via a maliciously crafted 'Redirect' query parameter. It targets specific versions of RSA WebAgent (5.2/5.3) on various Windows platforms, leveraging SEH overwrites for code execution.
This Metasploit module exploits a stack buffer overflow in RSA WebAgent for IIS via a malformed 'Redirect' query parameter. It targets specific versions of RSA WebAgent (5.2/5.3) on various Windows platforms, leveraging SEH overwrites for code execution.