vendor:
Snort
by:
Trirat Puttaraksa
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Snort
Affected Version From: Snort 2.6.1
Affected Version To: Snort 2.6.1
Patch Exists: NO
Related CWE: No CVEs mentioned
CPE: a:snort:snort:2.6.1
Platforms Tested:
Year not mentioned
Snort DCE/RPC Preprocessor Buffer Overflow (Command Execution Version)
This exploit is used to execute commands on Windows XP SP2 with Snort 2.6.1 installed. It utilizes a buffer overflow vulnerability in the Snort DCE/RPC Preprocessor. The exploit sends a malicious packet to the target system, causing it to execute the 'calc.exe' command.
Mitigation:
Update to a patched version of Snort or apply any necessary security patches. Additionally, ensure that the system is protected by a firewall and intrusion detection system.