Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-1411. PoCs published by Luigi Auriemma.
AI-analyzed exploit summary The document describes two vulnerabilities in Acronis PXE Server: a directory traversal flaw allowing arbitrary file downloads via TFTP, and a NULL pointer dereference causing a DoS. It includes technical details and proof-of-concept commands but no functional exploit code.
Description
The PXE Server (pxesrv.exe) in Acronis Snap Deploy 2.0.0.1076 and earlier allows remote attackers to cause a denial of service (crash) via an incomplete TFTP request, which triggers a NULL pointer dereference.
Exploits (1)
The document describes two vulnerabilities in Acronis PXE Server: a directory traversal flaw allowing arbitrary file downloads via TFTP, and a NULL pointer dereference causing a DoS. It includes technical details and proof-of-concept commands but no functional exploit code.