31644Third-party advisory
http://secunia.com/advisories/31644 CVE-2008-4048
Friendly Technologies - 'fwRemoteCfg.dll' ActiveX Remote Buffer Overflow
Record summary
CVE-2008-4048 has a selected CVSS score of 6.8; EIP currently links 1 catalogued exploit.
Description
Heap-based buffer overflow in a certain ActiveX control in fwRemoteCfg.dll 3.3.3.1 in Friendly Technologies FriendlyPPPoE Client 3.0.0.57 allows remote attackers to execute arbitrary code via a long third argument to the CreateURLShortcut method.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBFriendly Technologies - 'fwRemoteCfg.dll' ActiveX Remote Buffer OverflowExploitDB exploitby spdrNot analyzed1 file
References
64242Third-party advisory
http://securityreason.com/securityalert/4242 30891vdb entry
http://www.securityfocus.com/bid/30891 friendly-createurlshortcut-bo(44755)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/44755 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2008-4048 6323exploit
https://www.exploit-db.com/exploits/6323