Exploitation Summary
EIP tracks 3 public exploits for CVE-2006-2926.
PoCs published by Metasploit, kingcope, including Metasploit module exploits/windows/proxy/qbik_wingate_wwwproxy.
AI-analyzed exploit summary This Metasploit module exploits a stack buffer overflow in Qbik WinGate WWW Proxy Server by sending a malformed HTTP POST request with an overly long URL, leading to arbitrary code execution.
Description
Stack-based buffer overflow in the WWW Proxy Server of Qbik WinGate 6.1.1.1077 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long URL HTTP request.
Exploits (3)
This Metasploit module exploits a stack buffer overflow in Qbik WinGate WWW Proxy Server by sending a malformed HTTP POST request with an overly long URL, leading to arbitrary code execution.
This exploit targets a buffer overflow vulnerability in QBik Wingate 6.1.1.1077 on Windows 2000 SP4 (German). It uses a crafted HTTP POST request to trigger the overflow and execute a bind shell payload.
This Metasploit module exploits a stack buffer overflow in Qbik WinGate WWW Proxy Server by sending a malformed HTTP POST request with an overly long URL, allowing arbitrary code execution. The exploit leverages a known return address (0x01991932) to redirect execution flow to the payload.