CVE-2010-2305
Symantec Sygate Personal Firewall 5.6 build 2808 - Buffer Overflow via ActiveX SetRegString Method
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-2305. PoCs published by Lincoln.
AI-analyzed exploit summary This exploit targets a SEH-based vulnerability in Sygate Personal Firewall 5.6 build 2808 ActiveX control, leveraging a ROP chain to bypass DEP and execute a calc.exe payload via alphanumeric shellcode.
Description
Buffer overflow in an ActiveX control in SSHelper.dll for Symantec Sygate Personal Firewall 5.6 build 2808 allows remote attackers to execute arbitrary code via a long third argument to the SetRegString method.
Exploits (1)
This exploit targets a SEH-based vulnerability in Sygate Personal Firewall 5.6 build 2808 ActiveX control, leveraging a ROP chain to bypass DEP and execute a calc.exe payload via alphanumeric shellcode.