vendor:
Savant web server
by:
Infam0us Gr0up
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Savant web server
Affected Version From: Not mentioned
Affected Version To: Not mentioned
Patch Exists: NO
Related CWE: Not mentioned
CPE: Not mentioned
Platforms Tested: Windows 2000 SP4, Windows XP SP1
Not mentioned
Savant Buffer Overflow Exploit
This exploit is for a buffer overflow vulnerability in Savant, a web server software. The vulnerability allows an attacker to execute arbitrary code on a vulnerable system. The exploit is written in Perl and is tested on Windows 2000 SP4 and Windows XP SP1. The exploit connects to a remote IP address and port specified as command-line arguments. It then builds and sends a payload that triggers the buffer overflow and executes the shellcode.
Mitigation:
Update to a non-vulnerable version of Savant or use an alternative web server software.