vendor:
IDEAL Administration 2011
by:
Dr_IDE
7.5
CVSS
HIGH
Local SEH Buffer Overflow
CWE
Product Name: IDEAL Administration 2011
Affected Version From: IDEAL Administration 2011 v11.4
Affected Version To: IDEAL Administration 2011 v11.4
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XPSP3
IDEAL Administration 2011 v11.4 Local SEH Buffer Overflow Exploit
This exploit takes advantage of a local SEH buffer overflow vulnerability in IDEAL Administration 2011 v11.4. It allows an attacker to execute arbitrary code on the target system by overflowing the SEH buffer. The exploit uses a bind shell payload encoded with x86/alpha_mixed encoder. The payload sets the LPORT to 4444 and uses the seh exit function.
Mitigation:
No known mitigation or remediation for this vulnerability