CVE-2019-17181
CRITICALintrasrv 1.0 - Remote SEH Buffer Overflow via HTTP GET or HEAD Request
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2019-17181.
PoCs published by xis_one, including Metasploit module exploits/windows/http/intrasrv_bof.
AI-analyzed exploit summary This Metasploit module exploits a buffer overflow vulnerability in Intrasrv Simple Web Server 1.0 via a maliciously crafted HTTP request. It uses an egghunter technique to locate and execute the payload, leading to remote code execution.
Description
A remote SEH buffer overflow has been discovered in IntraSrv 1.0 (2007-06-03). An attacker may send a crafted HTTP GET or HEAD request that can result in a compromise of the hosting system.
Exploits (1)
This Metasploit module exploits a buffer overflow vulnerability in Intrasrv Simple Web Server 1.0 via a maliciously crafted HTTP request. It uses an egghunter technique to locate and execute the payload, leading to remote code execution.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H