Record summary

CVE-2008-2161 has a selected CVSS score of 10.0; EIP currently links 2 catalogued exploits.

Description

Buffer overflow in TFTP Server SP 1.4 and 1.5 on Windows, and possibly other versions, allows remote attackers to execute arbitrary code via a long TFTP error packet. NOTE: some of these details are obtained from third party information.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
2

Proofs of concept

2

Catalogued exploits

ExploitDBTFTP Server for Windows 1.4 - ST Remote BSS OverflowExploitDB exploitby tixxDZNot analyzed1 file
ExploitDB

PoC details
MetasploitOpenTFTP SP 1.4 Error Packet OverflowMetasploit exploitby steponequit +1 moreNot analyzed1 file

Ruby

Metasploit

PoC details

References

6