CVE-2017-7310
HIGHDiskBoss < 8.9 - Buffer Overflow via Import Command XML Name Attribute
Title source: llmExploitation Summary
EIP tracks 7 public exploits for CVE-2017-7310.
PoCs published by Metasploit, Daniel Teixeira, including Metasploit module exploits/windows/fileformat/dupscout_xml.
AI-analyzed exploit summary This Metasploit module exploits a buffer overflow in Sync Breeze Enterprise 9.5.16 via a maliciously crafted XML file. It leverages SEH overwrites and a JMP ESP technique to achieve remote code execution.
Description
A buffer overflow vulnerability in Import Command in SyncBreeze before 10.6, DiskSorter before 10.6, DiskBoss before 8.9, DiskPulse before 10.6, DiskSavvy before 10.6, DupScout before 10.6, and VX Search before 10.6 allows attackers to execute arbitrary code via a crafted XML file containing a long name attribute of a classify element.
Exploits (7)
This Metasploit module exploits a buffer overflow in Sync Breeze Enterprise 9.5.16 via a maliciously crafted XML file. It leverages SEH overwrites and a JMP ESP technique to achieve remote code execution.
This exploit targets a buffer overflow vulnerability in DiskBoss Enterprise v7.8.16 via the 'Import Command' feature. It leverages a JMP ESP instruction and a custom shellcode to execute calc.exe, demonstrating arbitrary code execution.
This exploit targets a buffer overflow vulnerability in DiskSorter Enterprise 9.5.12 via the 'Import Command' feature, leveraging SEH overwrite and shellcode execution to spawn calc.exe. It uses a structured payload with NOPs, JMP ESP, and a custom shellcode.
This exploit targets a buffer overflow vulnerability in Sync Breeze Enterprise 9.5.16 via the 'Import Command' feature. It leverages SEH overwrites and shellcode execution to spawn calc.exe, demonstrating arbitrary code execution.
This exploit leverages a buffer overflow in Disk Pulse Enterprise v10.4.18 via a malformed XML file to achieve remote code execution. It uses SEH overwrite and shellcode execution to spawn calc.exe.
This Metasploit module exploits a buffer overflow in Dup Scout Enterprise v10.4.16 via a maliciously crafted XML file. It leverages SEH overwrites and a JMP ESP instruction to achieve remote code execution.
This Metasploit module exploits a buffer overflow in Sync Breeze Enterprise 9.5.16 via a maliciously crafted XML file. It leverages SEH overwrites and a JMP ESP technique to achieve remote code execution.
References (13)
Scores
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H