CVE-2008-4193
Alt-N SecurityGateway 1.0.1 - Stack-Based Buffer Overflow via Long Username Parameter
Title source: llmExploitation Summary
EIP tracks 4 public exploits for CVE-2008-4193.
PoCs published by Metasploit, Heretic2, securfrog, including Metasploit module exploits/windows/http/altn_securitygateway.
AI-analyzed exploit summary This is a Metasploit module exploiting a buffer overflow in Alt-N SecurityGateway via the 'username' parameter, leading to remote code execution with SYSTEM privileges. The exploit uses SEH overwrites and a custom encoder to bypass bad characters.
Description
Stack-based buffer overflow in SecurityGateway.dll in Alt-N Technologies SecurityGateway 1.0.1 allows remote attackers to execute arbitrary code via a long username parameter.
Exploits (4)
This is a Metasploit module exploiting a buffer overflow in Alt-N SecurityGateway via the 'username' parameter, leading to remote code execution with SYSTEM privileges. The exploit uses SEH overwrites and a custom encoder to bypass bad characters.
This exploit targets a remote stack overflow in Alt-N SecurityGateway v1.00-1.01. It uses a custom-encoded bindshell payload to bypass character restrictions and achieve remote code execution.
This exploit targets a buffer overflow vulnerability in SecurityGateway 1.0.1 by sending a maliciously crafted POST request to the remote administration port (4000). The payload overwrites the EIP register with a pattern of 'c' characters, demonstrating control over execution flow.
This Metasploit module exploits a buffer overflow in Alt-N SecurityGateway via the 'username' parameter, leading to remote code execution with SYSTEM privileges. It uses SEH overwrites and a custom encoder to bypass bad characters.