CVE-2011-3175
Novell ZENworks Configuration Management 11.1 and 11.1a - Remote Code Execution via Preboot Service Opcode 0x6c
Title source: llmExploitation Summary
EIP tracks 3 public exploits for CVE-2011-3175.
PoCs published by Metasploit, Luigi Auriemma, juan vazquez, including Metasploit module exploits/windows/novell/zenworks_preboot_op6c_bof.
AI-analyzed exploit summary This Metasploit module exploits a buffer overflow in Novell ZENworks Configuration Management's Preboot Service via a crafted packet with opcode 0x6c. It includes ROP chains for DEP bypass and targets specific versions of ZENworks on Windows Server 2003 SP2.
Description
Stack-based buffer overflow in the Preboot Service in Novell ZENworks Configuration Management (ZCM) 11.1 and 11.1a allows remote attackers to execute arbitrary code via an opcode 0x6c request.
Exploits (3)
This Metasploit module exploits a buffer overflow in Novell ZENworks Configuration Management's Preboot Service via a crafted packet with opcode 0x6c. It includes ROP chains for DEP bypass and targets specific versions of ZENworks on Windows Server 2003 SP2.
This Metasploit module exploits a buffer overflow in Novell ZENworks Configuration Management's Preboot service via a crafted packet with opcode 0x4c. It includes ROP chains for DEP bypass and targets specific versions of ZENworks on Windows Server 2003 SP2.
This Metasploit module exploits a buffer overflow in Novell ZENworks Configuration Management Preboot Service via opcode 0x6c. It uses ROP chains to bypass DEP and achieve remote code execution on Windows Server 2003 SP2.