vendor:
IDEAL Migration 2009
by:
Dr_IDE
7.5
CVSS
HIGH
Buffer Overflow
CWE
Product Name: IDEAL Migration 2009
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XPSP3
IDEAL Migration 2009 v4.5.1 Local Buffer Overflow Exploit
This exploit takes advantage of a local buffer overflow vulnerability in IDEAL Migration 2009 v4.5.1. By right clicking the first element in the tree and opening a migration project, an attacker can execute arbitrary code and gain a bind shell on the target system. The exploit code is a shell_bind_tcp payload with a length of 696 bytes. It uses the x86/alpha_mixed encoder and sets the EXITFUNC to seh and LPORT to 4444.