header-logo
Suggest Exploit
vendor:
WBT SNMP Administrator
by:
hyp3rlinx
9.8
CVSS
CRITICAL
Unauthenticated Remote Buffer Overflow Code Execution 0day
119
CWE
Product Name: WBT SNMP Administrator
Affected Version From: 2.0.195.15
Affected Version To: 2.0.195.15
Patch Exists: NO
Related CWE: CVE-2019-13577
CPE: a:maple_computer:wbt_snmp_administrator:2.0.195.15
Metasploit:
Other Scripts:
Platforms Tested: Windows
2019

MAPLE Computer WBT SNMP Administrator 2.0.195.15 – Remote Buffer Overflow

SnmpAdm.exe in MAPLE WBT SNMP Administrator v2.0.195.15 has an Unauthenticated Remote Buffer Overflow via a long string to the CE Remote feature listening on Port 987. This will overwrite data on the stack/registers and allow for control of the programs execution flow resulting in attacker supplied remote code execution. Authentication is not required for this exploit.

Mitigation:

No patch available currently. Avoid exposing the SNMP service to untrusted networks or restrict access to trusted IPs. Consider using alternative SNMP management tools.
Source

Exploit-DB raw data: