CVE-2012-4250
Samsung NET-i viewer 1.37 - Remote Code Execution via RequestScreenOptimization Function
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2012-4250. PoCs published by blake.
AI-analyzed exploit summary This exploit targets a SEH overwrite vulnerability in SAMSUNG NET-i viewer ActiveX control (XProcessControl.ocx) via a crafted argument to RequestScreenOptimization. It includes shellcode for a bind shell on port 4444.
Description
Stack-based buffer overflow in the RequestScreenOptimization function in the XProcessControl.ocx ActiveX control in msls31.dll in Samsung NET-i viewer 1.37 allows remote attackers to execute arbitrary code via a long string in the first argument.
Exploits (1)
This exploit targets a SEH overwrite vulnerability in SAMSUNG NET-i viewer ActiveX control (XProcessControl.ocx) via a crafted argument to RequestScreenOptimization. It includes shellcode for a bind shell on port 4444.