Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-1278. PoCs published by Luigi Auriemma.
AI-analyzed exploit summary This exploit triggers a denial-of-service vulnerability in RemotelyAnywhere by sending a malformed HTTP request with an 'Accept-Charset' header containing 'boom', causing the server to crash due to a NULL pointer dereference.
Description
The RemotelyAnywhere.exe service in the Remotely Anywhere Server and Workstation 8.0.668 and earlier allows remote attackers to cause a denial of service (crash) via an invalid Accept-Charset header, which triggers a NULL pointer dereference. NOTE: the service is automatically restarted.
Exploits (1)
This exploit triggers a denial-of-service vulnerability in RemotelyAnywhere by sending a malformed HTTP request with an 'Accept-Charset' header containing 'boom', causing the server to crash due to a NULL pointer dereference.