CVE-2008-2158
EMC AlphaStor 3.1 SP1 - Remote Code Execution via Crafted TCP Packets
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2008-2158.
PoCs published by Metasploit, including Metasploit module exploits/windows/emc/alphastor_agent.
AI-analyzed exploit summary This Metasploit module exploits a stack buffer overflow in EMC AlphaStor 3.1 via a crafted message sent to port 41025. It leverages a known return address in dblib9.dll to achieve remote code execution.
Description
Multiple stack-based buffer overflows in the Command Line Interface process in the Server Agent in EMC AlphaStor 3.1 SP1 for Windows allow remote attackers to execute arbitrary code via crafted TCP packets to port 41025.
Exploits (2)
This Metasploit module exploits a stack buffer overflow in EMC AlphaStor 3.1 via a crafted message sent to port 41025. It leverages a known return address in dblib9.dll to achieve remote code execution.
This Metasploit module exploits a stack buffer overflow in EMC AlphaStor 3.1 by sending a crafted message to port 41025, allowing arbitrary code execution. The exploit constructs a malicious payload with NOP sleds, a return address, and shellcode to achieve RCE.