vendor:
J-Integra
by:
Dr_IDE
7,5
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: J-Integra
Affected Version From: 2.11
Affected Version To: 2.11
Patch Exists: YES
Related CWE: (0day)
CPE: 2.11
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
0day
J-Integra v2.11 ActiveX SetIdentity() Buffer Overflow Exploit
This exploit is a buffer overflow vulnerability in J-Integra v2.11 ActiveX control. It allows an attacker to execute arbitrary code on the vulnerable system by overflowing the buffer with malicious code. The exploit uses a payload of windows/exec cmd=calc.exe and is tested on XP SP3 IE7.
Mitigation:
The user should update to the latest version of J-Integra and ensure that the system is running the latest security patches.