SAP EnjoySAP RFCGUISink.DLL ActiveX Control Stack Buffer Overflow Vulnerability
BID:24777
Info
SAP EnjoySAP RFCGUISink.DLL ActiveX Control Stack Buffer Overflow Vulnerability
| Bugtraq ID: | 24777 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2007-3606 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 05 2007 12:00AM |
| Updated: | May 07 2015 05:37PM |
| Credit: | Mark Litchfield is credited with the discovery of this issue. |
| Vulnerable: |
SAP EnjoySAP 0 |
| Not Vulnerable: | |
Discussion
SAP EnjoySAP RFCGUISink.DLL ActiveX Control Stack Buffer Overflow Vulnerability
EnjoySAP is prone to a stack-based buffer-overflow vulnerability because the software fails to adequately check boundaries on data supplied to an ActiveX control method.
An attacker can exploit this issue to execute arbitrary code in the context of a user running the application. Failed attempts will likely result in denial-of-service conditions.
EnjoySAP is prone to a stack-based buffer-overflow vulnerability because the software fails to adequately check boundaries on data supplied to an ActiveX control method.
An attacker can exploit this issue to execute arbitrary code in the context of a user running the application. Failed attempts will likely result in denial-of-service conditions.
Exploit / POC
SAP EnjoySAP RFCGUISink.DLL ActiveX Control Stack Buffer Overflow Vulnerability
To exploit these issues, an attacker must entice an unsuspecting user to view a malicious webpage.
The following exploit code is available:
To exploit these issues, an attacker must entice an unsuspecting user to view a malicious webpage.
The following exploit code is available:
Solution / Fix
SAP EnjoySAP RFCGUISink.DLL ActiveX Control Stack Buffer Overflow Vulnerability
Solution:
The vendor has released fixes to address this issue. Please contact the vendor for information on how to obtain and apply these fixes.
Solution:
The vendor has released fixes to address this issue. Please contact the vendor for information on how to obtain and apply these fixes.
References
SAP EnjoySAP RFCGUISink.DLL ActiveX Control Stack Buffer Overflow Vulnerability
References:
References:
- SAP Homepage (SAP)