Exploitation Summary
EIP tracks 1 public exploit for CVE-2013-3075. PoCs published by Dr_IDE.
AI-analyzed exploit summary This exploit targets a heap overflow vulnerability in Mitsubishi MX Component v3 ActiveX (ActUWzd.dll) via the WzTitle property. It uses heap spraying and shellcode execution to spawn a bind shell on port 5500.
Description
Multiple buffer overflows in ActUWzd.dll 1.0.0.1 in Mitsubishi MX Component 3, as distributed in Citect CitectFacilities 7.10 and CitectScada 7.10r1, allow remote attackers to execute arbitrary code via a long string, as demonstrated by a long WzTitle property value to a certain ActiveX control.
Exploits (1)
This exploit targets a heap overflow vulnerability in Mitsubishi MX Component v3 ActiveX (ActUWzd.dll) via the WzTitle property. It uses heap spraying and shellcode execution to spawn a bind shell on port 5500.