vendor:
Savant Web Server
by:
CorryL
7.5
CVSS
HIGH
Remote Buffer Overflow
CWE
Product Name: Savant Web Server
Affected Version From: 3.1
Affected Version To: 3.1
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows Server 2003
Unknown
Savant Web Server 3.1 Remote Buffer Overflow Exploit
This exploit sends a 253-byte payload to the Savant Web Server 3.1, causing a buffer overflow. The exploit overwrites the EIP register with bytes 254 to 258, successfully creating an Administrator user on the victim server. It has been tested on a Windows Server 2003 using the return address 00b7ead8.
Mitigation:
Update to a patched version of Savant Web Server or use an alternative web server software.