vendor:
IBM Domino
by:
e.b.
7.5
CVSS
HIGH
SEH Overwrite
119
CWE
Product Name: IBM Domino
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE: CVE-2007-4474
CPE: a:ibm:domino
Platforms Tested: Windows XP SP2 (fully patched) English, IE6
2007
IBM Domino Web Access Upload Module dwa7w.dll SEH Overwrite Exploit
This exploit targets the IBM Domino Web Access Upload Module dwa7w.dll and takes advantage of a SEH (Structured Exception Handling) overwrite vulnerability. It allows an attacker to execute arbitrary code on a vulnerable system.
Mitigation:
To mitigate this vulnerability, apply the latest patches and updates from the vendor. Additionally, restrict access to the affected module and implement strong access controls.