CVE-2011-5124
Blue Coat ProxyOne and ProxySG - Stack-Based Buffer Overflow via Large Packet to Synchronization Port
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2011-5124.
PoCs published by Metasploit, Paul Harrington, Travis Warren, sinn3r, including Metasploit module exploits/windows/misc/bcaaa_bof.
AI-analyzed exploit summary This Metasploit module exploits a stack buffer overflow in Blue Coat Authentication and Authorization Agent (BCAAA) 5.4.6.1.54128 via port 16102, using a ROP chain to bypass DEP/ASLR and achieve remote code execution.
Description
Stack-based buffer overflow in the BCAAA component before build 60258, as used by Blue Coat ProxySG 4.2.3 through 6.1 and ProxyOne, allows remote attackers to execute arbitrary code via a large packet to the synchronization port (16102/tcp).
Exploits (2)
This Metasploit module exploits a stack buffer overflow in Blue Coat Authentication and Authorization Agent (BCAAA) 5.4.6.1.54128 via port 16102, using a ROP chain to bypass DEP/ASLR and achieve remote code execution.
This Metasploit module exploits a stack buffer overflow in Blue Coat Authentication and Authorization Agent (BCAAA) 5 via port 16102. It uses a ROP chain to bypass DEP/ASLR and achieve remote code execution, with multiple attempts for reliability.