CVE-2007-1041
S&H Computer Systems News Rover 12.1 Rev 1 - Buffer Overflow
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2007-1041. PoCs published by Umesh Wanve, Marsu.
AI-analyzed exploit summary This Perl script exploits a stack-based buffer overflow in News Rover 12.1 Rev 1 via a crafted .nzb file with an overly long 'subject' parameter. It overwrites the SEH handler and executes arbitrary shellcode (calc.exe in this case).
Description
Multiple stack-based buffer overflows in S&H Computer Systems News Rover 12.1 Rev 1 allow remote attackers to execute arbitrary code via a .nzb file with a long (1) group or (2) subject string.
Exploits (2)
This Perl script exploits a stack-based buffer overflow in News Rover 12.1 Rev 1 via a crafted .nzb file with an overly long 'subject' parameter. It overwrites the SEH handler and executes arbitrary shellcode (calc.exe in this case).
This exploit targets a stack overflow vulnerability in News Rover 12.1 Rev 1 via malformed NZB files. It includes shellcode for both calc.exe execution and a bind shell, demonstrating remote code execution (RCE) capabilities.