CVE-2017-6187
CRITICALDiskSavvy Enterprise 9.4.18 - Remote Code Execution via Long URI in GET Request
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2017-6187.
PoCs published by Peter Baris, vportal, Gabor Seljan, including Metasploit module exploits/windows/http/disksavvy_get_bof.
AI-analyzed exploit summary This exploit targets a remote buffer overflow vulnerability in DiskSavvy Enterprise 9.4.18, leveraging SEH overwrite with WoW64 egghunters to achieve remote code execution. It includes platform-specific egghunters for Windows 7 and Windows 10 x64 systems.
Description
Buffer overflow in the built-in web server in DiskSavvy Enterprise 9.4.18 allows remote attackers to execute arbitrary code via a long URI in a GET request.
Exploits (2)
This exploit targets a remote buffer overflow vulnerability in DiskSavvy Enterprise 9.4.18, leveraging SEH overwrite with WoW64 egghunters to achieve remote code execution. It includes platform-specific egghunters for Windows 7 and Windows 10 x64 systems.
This Metasploit module exploits a stack-based buffer overflow in DiskSavvy Enterprise's web interface via a maliciously crafted HTTP GET request. It uses an egghunter and SEH overwrite to achieve remote code execution on vulnerable versions.
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H