vendor:
bomberclone
by:
escazoo@yahoo.com
7.5
CVSS
HIGH
Remote Code Execution
119
CWE
Product Name: bomberclone
Affected Version From: 0.11.6.2
Affected Version To: 0.11.6.2
Patch Exists: NO
Related CWE: CVE-2006-0460
CPE: a:bomberclone:bomberclone:0.11.6.2
Platforms Tested: Linux, Windows
2006
bomberclone < 0.11.6.2 remote exploit
This exploit targets a vulnerability in bomberclone version 0.11.6.2. It allows an attacker to execute arbitrary code on the target system. The exploit code includes shellcode for both Linux and Windows systems. The Linux shellcode performs a bind shell on port 31337, while the Windows shellcode binds to port 4444. The exploit code is written in C.
Mitigation:
The vulnerability can be mitigated by updating the bomberclone software to a version higher than 0.11.6.2. Additionally, system administrators should ensure that the software is running with minimal privileges.