Exploitation Summary
EIP tracks 2 public exploits for CVE-2007-2668. PoCs published by Xpl017Elz, vade79.
AI-analyzed exploit summary This exploit targets a buffer overflow in Webdesproxy 0.0.1 on Fedora Core 6, leveraging exec-shield bypass techniques to achieve remote code execution via a reverse shell. It constructs a malicious HTTP GET request to overwrite the GOT and execute arbitrary commands.
Description
Buffer overflow in webdesproxy 0.0.1 allows remote attackers to execute arbitrary code via a long URL, possibly involving the process_connection_request function in webdesproxy.c.
Exploits (2)
This exploit targets a buffer overflow in Webdesproxy 0.0.1 on Fedora Core 6, leveraging exec-shield bypass techniques to achieve remote code execution via a reverse shell. It constructs a malicious HTTP GET request to overwrite the GOT and execute arbitrary commands.
This exploit targets a remote buffer overflow in webdesproxy v0.0.1 via a crafted GET request, leveraging a static JMP ESP address in cygwin1.dll for reliable exploitation. It includes shellcode for a bind shell on port 7979.