CVE-2017-6416
CRITICALSysGauge 1.5.18 - Buffer Overflow via SMTP Service Ready String
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2017-6416.
PoCs published by Peter Baris, Chris Higgins, Peter Baris, including Metasploit module exploits/windows/smtp/sysgauge_client_bof.
AI-analyzed exploit summary This exploit demonstrates a buffer overflow in SysGauge 1.5.18's SMTP connection verification function, leading to remote code execution via a crafted SMTP response. The payload is split into two parts to bypass size constraints and uses a reverse Meterpreter shell.
Description
An issue was discovered in SysGauge 1.5.18. A buffer overflow vulnerability in SMTP connection verification leads to arbitrary code execution. The attack vector is a crafted SMTP daemon that sends a long 220 (aka "Service ready") string.
Exploits (2)
This exploit demonstrates a buffer overflow in SysGauge 1.5.18's SMTP connection verification function, leading to remote code execution via a crafted SMTP response. The payload is split into two parts to bypass size constraints and uses a reverse Meterpreter shell.
This Metasploit module exploits a buffer overflow vulnerability in SysGauge 1.5.18 via SMTP server validation. It sends a malicious 220 response to trigger the overflow, resulting in an unprivileged shell.
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H