CVE-2008-0392
Microsoft Visual Basic Enterprise Edition 6.0 SP6 - Buffer Overflow via .dsr File ConnectionName or CommandName
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-0392. PoCs published by shinnai.
AI-analyzed exploit summary This exploit generates a malicious .dsr file that triggers a buffer overflow in MS Visual Basic Enterprise Edition 6 SP6 when opened, leading to arbitrary code execution via a crafted 'ConnectionName' or 'CommandName' property.
Description
Multiple buffer overflows in Microsoft Visual Basic Enterprise Edition 6.0 SP6 allow user-assisted remote attackers to execute arbitrary code via a .dsr file with a long (1) ConnectionName or (2) CommandName line.
Exploits (1)
This exploit generates a malicious .dsr file that triggers a buffer overflow in MS Visual Basic Enterprise Edition 6 SP6 when opened, leading to arbitrary code execution via a crafted 'ConnectionName' or 'CommandName' property.