vendor:
Not mentioned
by:
Lucas Lavarello, Juliano Rizzo
7.5
CVSS
HIGH
Heap Overflow
Not mentioned
CWE
Product Name: Not mentioned
Affected Version From: Not mentioned
Affected Version To: Not mentioned
Patch Exists: NO
Related CWE: Not mentioned
CPE: Not mentioned
Platforms Tested: Not mentioned
2004
IIS NNTP Service XPAT command heap overflow proof of concept
This is a proof of concept exploit for a heap overflow vulnerability in the IIS NNTP Service. The exploit sends a specially crafted XPAT command to the server, causing a heap overflow. The vulnerability allows an attacker to execute arbitrary code on the targeted system.
Mitigation:
No mitigation or remediation mentioned