vendor:
Wingate
by:
kcope
9.3
CVSS
HIGH
Remote Code Execution
119
CWE
Product Name: Wingate
Affected Version From: 6.1.1.1077
Affected Version To: 6.1.1.1077
Patch Exists: YES
Related CWE: N/A
CPE: a:qbik_software:wingate
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2006
QBik Wingate version 6.1.1.1077 remote exploit for Win2k SP4 (german)
This exploit is a proof of concept for a remote code execution vulnerability in QBik Wingate version 6.1.1.1077. The exploit uses a buffer overflow to overwrite the return address of the stack and execute malicious code. The malicious code is encoded using the PexAlphaNum encoder.
Mitigation:
Upgrade to the latest version of QBik Wingate.