CVE-2009-1394
Motorola Timbuktu Pro 8.6.5 - Stack-based Buffer Overflow via PlughNTCommand Named Pipe
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2009-1394.
PoCs published by Metasploit, bannedit, including Metasploit module exploits/windows/smb/timbuktu_plughntcommand_bof.
AI-analyzed exploit summary This Metasploit module exploits a stack-based buffer overflow in Timbuktu Pro <= 8.6.6 via the PlughNTCommand named pipe. It uses a two-stage attack: first leaking stack data to bypass checks, then executing a payload for remote code execution.
Description
Stack-based buffer overflow in Motorola Timbuktu Pro 8.6.5 on Windows allows remote attackers to execute arbitrary code by sending a long malformed string over the PlughNTCommand named pipe.
Exploits (2)
This Metasploit module exploits a stack-based buffer overflow in Timbuktu Pro <= 8.6.6 via the PlughNTCommand named pipe. It uses a two-stage attack: first leaking stack data to bypass checks, then executing a payload for remote code execution.
This Metasploit module exploits a stack-based buffer overflow in Timbuktu Pro <= 8.6.6 via the PlughNTCommand named pipe. It uses a two-stage attack: first leaking stack data to bypass checks, then executing a payload for remote code execution.