Exploitation Summary
EIP tracks 1 public exploit for CVE-2016-9176. PoCs published by Umit Aksu.
AI-analyzed exploit summary This exploit demonstrates a local stack overflow in Micro Focus Rumba 9.4 by overwriting EIP and SEH/NSEH via memory spraying. The PoC uses the `send.exe` and `receive.exe` utilities to trigger the vulnerability.
Description
Stack buffer overflow in the send.exe and receive.exe components of Micro Focus Rumba 9.4 and earlier could be used by local attackers or attackers able to inject arguments to these binaries to execute code.
Exploits (1)
This exploit demonstrates a local stack overflow in Micro Focus Rumba 9.4 by overwriting EIP and SEH/NSEH via memory spraying. The PoC uses the `send.exe` and `receive.exe` utilities to trigger the vulnerability.
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H