Exploitation Summary
EIP tracks 2 public exploits for CVE-2017-11517.
PoCs published by Maurice Popp, Luca Cappiello, Maurice Popp, including Metasploit module exploits/windows/http/geutebrueck_gcore_x64_rce_bo.
AI-analyzed exploit summary This Metasploit module exploits a stack-based buffer overflow in Geutebrueck GCore's GCoreServer.exe (versions 1.3.8.42 and 1.4.2.37) to achieve remote code execution. It uses ROP chains to bypass DEP and execute arbitrary payloads on Windows x64 systems.
Description
Stack-based buffer overflow in GCoreServer.exe in the server in Geutebrueck Gcore 1.3.8.42 and 1.4.2.37 allows remote attackers to execute arbitrary code via a long URI in a GET request.
Exploits (2)
This Metasploit module exploits a stack-based buffer overflow in Geutebrueck GCore's GCoreServer.exe (versions 1.3.8.42 and 1.4.2.37) to achieve remote code execution. It uses ROP chains to bypass DEP and execute arbitrary payloads on Windows x64 systems.
This Metasploit module exploits a stack-based buffer overflow in Geutebrueck GCore's GCoreServer.exe (versions 1.3.8.42 and 1.4.2.37) to achieve remote code execution via a ROP chain and VirtualProtect manipulation.
References (1)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H