Exploitation Summary
EIP tracks 2 public exploits for CVE-2010-4741.
PoCs published by Metasploit, Ruben Santamarta, MC, including Metasploit module exploits/windows/scada/moxa_mdmtool.
AI-analyzed exploit summary This Metasploit module exploits a stack buffer overflow in MOXA MDM Tool 2.1 by sending a crafted MDMGw response to execute arbitrary code via a reverse shell. It uses SEH overwrites and a custom payload to achieve remote code execution.
Description
Stack-based buffer overflow in MDMUtil.dll in MDMTool.exe in MDM Tool before 2.3 in Moxa Device Manager allows remote MDM Gateways to execute arbitrary code via crafted data in a session on TCP port 54321.
Exploits (2)
This Metasploit module exploits a stack buffer overflow in MOXA MDM Tool 2.1 by sending a crafted MDMGw response to execute arbitrary code via a reverse shell. It uses SEH overwrites and a custom payload to achieve remote code execution.
This Metasploit module exploits a stack buffer overflow in MOXA MDM Tool 2.1 via a crafted MDMGw response, allowing arbitrary code execution. It uses SEH overwrite and a call instruction to trigger the payload.