CVE-2006-2086
JuniperSetup Control - Buffer Overflow via ProductName Parameter
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2006-2086.
PoCs published by Metasploit, including Metasploit module exploits/windows/browser/juniper_sslvpn_ive_setupdll.
AI-analyzed exploit summary This exploit targets a stack buffer overflow in JuniperSetupDLL.dll via the JuniperSetup.ocx ActiveX control. It delivers a payload through an overly long ProductName parameter, leading to remote code execution on vulnerable systems.
Description
Buffer overflow in JuniperSetupDLL.dll, loaded from JuniperSetup.ocx by the Juniper SSL-VPN Client when accessing a Juniper NetScreen IVE device running IVE OS before 4.2r8.1, 5.0 before 5.0r6.1, 5.1 before 5.1r8, 5.2 before 5.2r4.1, or 5.3 before 5.3r2.1, allows remote attackers to execute arbitrary code via a long argument in the ProductName parameter.
Exploits (2)
This exploit targets a stack buffer overflow in JuniperSetupDLL.dll via the JuniperSetup.ocx ActiveX control. It delivers a payload through an overly long ProductName parameter, leading to remote code execution on vulnerable systems.
This Metasploit module exploits a stack buffer overflow in JuniperSetupDLL.dll via an overly long ProductName parameter in the JuniperSetup.ocx ActiveX control. It delivers a payload to achieve remote code execution on vulnerable Windows systems.