CVE-2006-6707
McAfee NeoTrace and Visual Trace 3.25 - Stack-Based Buffer Overflow via TraceTarget Method
Title source: llmExploitation Summary
EIP tracks 3 public exploits for CVE-2006-6707.
PoCs published by Metasploit, nitr0us, MC, including Metasploit module exploits/windows/browser/mcafeevisualtrace_tracetarget.
AI-analyzed exploit summary This Metasploit module exploits a stack buffer overflow in McAfee Visual Trace 3.25 ActiveX Control (NeoTraceExplorer.dll 1.0.0.1) via the 'TraceTarget()' method. It delivers a payload through a malicious HTML page, achieving remote code execution on vulnerable systems.
Description
Stack-based buffer overflow in the NeoTraceExplorer.NeoTraceLoader ActiveX control (NeoTraceExplorer.dll) in NeoTrace Express 3.25 and NeoTrace Pro (aka McAfee Visual Trace) 3.25 allows remote attackers to execute arbitrary code via a long argument string to the TraceTarget method. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.
Exploits (3)
This Metasploit module exploits a stack buffer overflow in McAfee Visual Trace 3.25 ActiveX Control (NeoTraceExplorer.dll 1.0.0.1) via the 'TraceTarget()' method. It delivers a payload through a malicious HTML page, achieving remote code execution on vulnerable systems.
This is a working exploit for CVE-2006-6707, targeting a buffer overflow in NeoTracePro 3.25 ActiveX Control via the TraceTarget() method. It uses heap spraying to bypass address restrictions and executes a bind shell payload.
This Metasploit module exploits a stack buffer overflow in the McAfee Visual Trace ActiveX control by sending an overly long string to the 'TraceTarget()' method, allowing arbitrary code execution. The exploit is delivered via a malicious HTML page with embedded JavaScript.