vendor:
FreeSSHD
by:
Matteo Memelli aka ryujin
8.8
CVSS
HIGH
Remote Seh Overflow
119
CWE
Product Name: FreeSSHD
Affected Version From: 1.2.2001
Affected Version To: 1.2.2001
Patch Exists: Yes
Related CWE: N/A
CPE: a:freesshd:freesshd:1.2.1
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP2, Windows Vista Ultimate
2008
FreeSSHD 1.2.1 (Post Auth) Remote Seh Overflow
This exploit is based on a proof-of-concept (POC) by securfrog and is used to exploit a vulnerability in FreeSSHD 1.2.1. The exploit sends a malicious payload to the target system, which then allows the attacker to gain remote access to the system. The exploit is tested on Windows XP SP2 and Windows Vista Ultimate, with the offset for SEH overwrite being 3 bytes greater in Windows Vista.
Mitigation:
The vendor has released a patch to address this vulnerability. Users should update to the latest version of FreeSSHD.