Exploitation Summary
EIP tracks 2 public exploits for CVE-2013-2343.
PoCs published by Metasploit, e6af8de8b1d4b2b6d5ba2610cbf9cd38, juan vazquez, including Metasploit module exploits/linux/misc/hp_vsa_login_bof.
AI-analyzed exploit summary This Metasploit module exploits a buffer overflow vulnerability in HP StorageWorks P4000 Virtual SAN Appliance due to insecure usage of sscanf() during login request parsing. It achieves remote code execution by overwriting the return address and redirecting execution to shellcode.
Description
Unspecified vulnerability on the HP LeftHand Virtual SAN Appliance hydra with software before 10.0 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1510.
Exploits (2)
This Metasploit module exploits a buffer overflow vulnerability in HP StorageWorks P4000 Virtual SAN Appliance due to insecure usage of sscanf() during login request parsing. It achieves remote code execution by overwriting the return address and redirecting execution to shellcode.
This Metasploit module exploits a buffer overflow vulnerability in HP StorageWorks P4000 Virtual SAN Appliance due to insecure usage of sscanf() during login request parsing. It achieves remote code execution by overwriting the return address and redirecting execution to shellcode.