vendor:
Smart Install Client
by:
Anonymous
9.8
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: Smart Install Client
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: N/A
2018
smi_ibc_init_discovery_BoF.py
This exploit is a buffer overflow vulnerability in the Smart Install Client. It sends a malicious packet containing a header and two TLV (Type-Length-Value) fields. The first TLV field contains a payload of 'BBBB' repeated 44 times, and the second TLV field contains a shellcode of 'D' repeated 2048 times. The header contains a data length field which is set to the length of the payload and shellcode plus 40 bytes. This causes the buffer to overflow, allowing the attacker to execute arbitrary code on the target system.
Mitigation:
Disable Smart Install Client on the target system.