vendor:
FSFDT Windows FSD Beta
by:
weak[at]fraglab.at
7.5
CVSS
HIGH
Remote Code Execution
Not provided
CWE
Product Name: FSFDT Windows FSD Beta
Affected Version From: FSFDT Windows FSD Beta from FSD V3.000 draft 9
Affected Version To: FSFDT Windows FSD Beta from FSD V3.000 draft 9
Patch Exists: NO
Related CWE: Not provided
CPE: Not provided
Platforms Tested: Windows 2000
Not provided
FSFDT Remote Exploit
This exploit allows an attacker to execute arbitrary code on a vulnerable FSFDT Windows FSD Beta from FSD V3.000 draft 9 installation running on Windows 2000 SP4. The exploit spawns a reverse shell to 10.0.0.100:4321. It leverages a buffer overflow vulnerability in the FSFDT software.
Mitigation:
Apply the latest patches and updates for the FSFDT software. Disable or restrict network access to the vulnerable system.