Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-4489. PoCs published by rgod.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in the eCentrex VOIP Client module (uacomx.ocx 2.0.1) by passing more than 164 characters to the ReInit method in the Username argument. It includes shellcode to execute arbitrary commands, specifically adding a user to the Administrators group.
Description
Buffer overflow in the IUAComFormX ActiveX control in uacomx.ocx 2.0.1 in the eCentrex VOIP Client module allows remote attackers to execute arbitrary code via a long Username argument to the ReInit method.
Exploits (1)
This exploit targets a buffer overflow vulnerability in the eCentrex VOIP Client module (uacomx.ocx 2.0.1) by passing more than 164 characters to the ReInit method in the Username argument. It includes shellcode to execute arbitrary commands, specifically adding a user to the Administrators group.