vendor:
Cain & Abel
by:
Trancek
7.5
CVSS
HIGH
Buffer Overflow
Buffer Overflow
CWE
Product Name: Cain & Abel
Affected Version From: Cain & Abel v4.9.24 and below
Affected Version To: Cain & Abel v4.9.24 and below
Patch Exists: NO
Related CWE: CVE-2008-5405
CPE: cpe
Platforms Tested: Windows
2008
Cain & Abel <= v4.9.24 RDP Buffer Overflow
This module exploits a stack-based buffer overflow in the Cain & Abel v4.9.24 and below. An attacker must send the file to victim, and the victim must open the specially crafted RDP file under Tools -> Remote Desktop Password Decoder.
Mitigation:
Unknown