CVE-2008-2240
IBM Lotus Domino - Stack-based Buffer Overflow via Accept-Language HTTP Header
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2008-2240.
PoCs published by Metasploit, including Metasploit module exploits/windows/lotus/domino_http_accept_language.
AI-analyzed exploit summary This Metasploit module exploits a stack buffer overflow in IBM Lotus Domino Web Server via an overly long Accept-Language header. It includes multiple targets for different versions and configurations, with DEP/NX bypass techniques.
Description
Stack-based buffer overflow in the Web Server service in IBM Lotus Domino before 7.0.3 FP1, and 8.x before 8.0.1, allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a long Accept-Language HTTP header.
Exploits (2)
This Metasploit module exploits a stack buffer overflow in IBM Lotus Domino Web Server via an overly long Accept-Language header. It includes multiple targets for different versions and configurations, with DEP/NX bypass techniques.
This Metasploit module exploits a stack buffer overflow in IBM Lotus Domino Web Server via an overly long Accept-Language header. It includes ROP chains to bypass NX and execute arbitrary payloads on vulnerable versions.