CVE-2016-8377
HIGHFatek Automation PLC WinProladder <3.11 Build 14701 - Buffer Overflow
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2016-8377. PoCs published by James Fitts.
AI-analyzed exploit summary This Metasploit module exploits a stack-based buffer overflow in Fatek Automation PLC WinProladder v3.11 Build 14701 by sending a maliciously crafted packet to a listening server, triggering remote code execution.
Description
An issue was discovered in Fatek Automation PLC WinProladder Version 3.11 Build 14701. A stack-based buffer overflow vulnerability exists when the software application connects to a malicious server, resulting in a stack buffer overflow. This causes an exploitable Structured Exception Handler (SEH) overwrite condition that may allow remote code execution.
Exploits (1)
This Metasploit module exploits a stack-based buffer overflow in Fatek Automation PLC WinProladder v3.11 Build 14701 by sending a maliciously crafted packet to a listening server, triggering remote code execution.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H