Exploitation Summary
EIP tracks 2 public exploits for CVE-2014-3913.
PoCs published by Metasploit, Unknown, juan vazquez, including Metasploit module exploits/windows/http/ericom_access_now_bof.
AI-analyzed exploit summary This Metasploit module exploits a stack-based buffer overflow in Ericom AccessNow Server via a malformed HTTP request, leveraging ROP gadgets to achieve remote code execution.
Description
Stack-based buffer overflow in AccessServer32.exe in Ericom AccessNow Server allows remote attackers to execute arbitrary code via a request for a non-existent file.
Exploits (2)
This Metasploit module exploits a stack-based buffer overflow in Ericom AccessNow Server via a malformed HTTP request, leveraging ROP gadgets to achieve remote code execution.
This Metasploit module exploits a stack-based buffer overflow in Ericom AccessNow Server via a malformed HTTP request, leveraging ROP gadgets to achieve remote code execution. It targets a vulnerability in the handling of user-controlled data with vsprintf.