CVE-2011-0404
NetSupport Manager Agent <=11.00 Remote Code Execution via Long Control Hostname
Title source: llmExploitation Summary
EIP tracks 3 public exploits for CVE-2011-0404.
PoCs published by Metasploit, ikki, Luca Carettoni (@_ikki), Evan, jduck, including Metasploit module exploits/linux/misc/netsupport_manager_agent.
AI-analyzed exploit summary This exploit targets a buffer overflow in NetSupport Manager Agent, using a ROP chain to bypass non-executable stack protections and achieve remote code execution. It leverages a series of carefully crafted packets to trigger the vulnerability and execute arbitrary payloads.
Description
Stack-based buffer overflow in NetSupport Manager Agent for Linux 11.00, for Solaris 9.50, and for Mac OS X 11.00 allows remote attackers to execute arbitrary code via a long control hostname to TCP port 5405, probably a different vulnerability than CVE-2007-5252.
Exploits (3)
This exploit targets a buffer overflow in NetSupport Manager Agent, using a ROP chain to bypass non-executable stack protections and achieve remote code execution. It leverages a series of carefully crafted packets to trigger the vulnerability and execute arbitrary payloads.
This Perl script exploits a remote buffer overflow in NetSupport Manager Agent for Linux, Solaris, and Mac OS X by sending crafted packets to trigger a shellcode execution. It targets versions 11.00 and earlier, bypassing authentication to achieve remote code execution.
This Metasploit module exploits a buffer overflow in NetSupport Manager Agent (CVE-2011-0404) using a ROP chain to bypass non-executable stack protections and achieve remote code execution.