vendor:
Disk Pulse Enterprise
by:
Tulpa
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Disk Pulse Enterprise
Affected Version From: 9.0.34
Affected Version To: 9.0.34
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows 7 x86 Enterprise SP1
Disk Pulse Enterprise 9.0.34 Buffer Overflow Exploit
This exploit targets Disk Pulse Enterprise 9.0.34 and allows an attacker to achieve NT AUTHORITYSYSTEM privileges without authentication. The exploit requires adjusting the IP address, shellcode, and bytes. It has been tested on Windows 7 x86 Enterprise SP1.
Mitigation:
Update to a version that is not affected by the buffer overflow vulnerability.