vendor:
Windows XP
by:
k`sOSe
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Windows XP
Affected Version From: Windows XP SP1
Affected Version To: Windows XP SP3
Patch Exists: YES
Related CWE: N/A
CPE: o:microsoft:windows_xp
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP
2008
Bypass Safeseh using Flash9f.ocx
This exploit is a buffer overflow vulnerability in the FTP server of Windows XP. It allows an attacker to execute arbitrary code on the vulnerable system by sending a maliciously crafted FTP command. The exploit uses a jump ahead and a pop, pop, ret instruction to bypass the SafeSEH protection. The exploit code is written in Perl and is tested on Windows XP SP1, SP2 and SP3.
Mitigation:
Update the FTP server to the latest version and apply the latest security patches.