CVE-2014-0784
Yokogawa CENTUM CS 3000 < R3.09.50 - Remote Code Execution via Crafted TCP Packet
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2014-0784.
PoCs published by Metasploit, juan vazquez, including Metasploit module exploits/windows/scada/yokogawa_bkbcopyd_bof.
AI-analyzed exploit summary This Metasploit module exploits a stack-based buffer overflow in Yokogawa CENTUM CS 3000's BKBCopyD.exe service via a crafted RETR command. It achieves remote code execution by overwriting the return address and executing shellcode.
Description
Stack-based buffer overflow in BKBCopyD.exe in Yokogawa CENTUM CS 3000 R3.09.50 and earlier allows remote attackers to execute arbitrary code via a crafted TCP packet.
Exploits (2)
This Metasploit module exploits a stack-based buffer overflow in Yokogawa CENTUM CS 3000's BKBCopyD.exe service via a crafted RETR command. It achieves remote code execution by overwriting the return address and executing shellcode.
This Metasploit module exploits a stack-based buffer overflow in Yokogawa CENTUM CS 3000's BKBCopyD.exe service via a crafted RETR command. It targets Windows XP SP3 with a specific return address to achieve remote code execution.