CVE-2011-0404

Netsupport Manager Agent - Memory Corruption

Title source: rule

Description

Stack-based buffer overflow in NetSupport Manager Agent for Linux 11.00, for Solaris 9.50, and for Mac OS X 11.00 allows remote attackers to execute arbitrary code via a long control hostname to TCP port 5405, probably a different vulnerability than CVE-2007-5252.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotelinux
https://www.exploit-db.com/exploits/16838
exploitdb WORKING POC VERIFIED
by ikki · perlremotemultiple
https://www.exploit-db.com/exploits/15937
metasploit WORKING POC NORMAL
by Luca Carettoni (@_ikki), Evan, jduck · rubypoclinux
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/misc/netsupport_manager_agent.rb

Scores

EPSS 0.7889
EPSS Percentile 99.1%

Details

CWE
CWE-119
Status published
Products (2)
netsupport/netsupport_manager_agent 9.50
netsupport/netsupport_manager_agent 11.00 (2 CPE variants)
Published Jan 11, 2011
Tracked Since Feb 18, 2026