vendor:
Windows XP
by:
Blake
9,3
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Windows XP
Affected Version From: Windows XP SP3
Affected Version To: Windows XP SP3
Patch Exists: YES
Related CWE: N/A
CPE: o:microsoft:windows_xp::sp3
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP3
2008
Registry OCX Remote Buffer Overflow
This exploit is a remote buffer overflow vulnerability in the Registry OCX component of Windows XP SP3. It is written in VBScript and uses a NOP sled and a bind shell payload to execute arbitrary code. The payload is encoded in hexadecimal and is injected into the vulnerable component.
Mitigation:
Disable the Registry OCX component or upgrade to a newer version of Windows.