vendor:
Intrasrv Simple Web Server
by:
xis_one@STM Solutions
9,3
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Intrasrv Simple Web Server
Affected Version From: 1.0
Affected Version To: 1.0
Patch Exists: NO
Related CWE: N/A
CPE: a:leigh_b:intrasrv_simple_web_server
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP3 Eng
2013
Intrasrv Simple Web Server 1.0 SEH based Remote Code Execution BOF
Intrasrv Simple Web Server 1.0 is vulnerable to a SEH based buffer overflow attack. An attacker can send a specially crafted HTTP request with an overly long string in the GET request, which can lead to arbitrary code execution. The vulnerable code is located in the function ‘GetRequest’ in the file ‘intrasrv.exe’. The application does not properly validate the length of the user-supplied input, which can be exploited to overwrite the SEH handler.
Mitigation:
The vendor has not released a patch for this vulnerability. As a workaround, users can disable the service or restrict access to the service from untrusted networks.