Boozt index.cgi Buffer Overrun Vulnerability
BID:6281
Info
Boozt index.cgi Buffer Overrun Vulnerability
| Bugtraq ID: | 6281 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 29 2002 12:00AM |
| Updated: | Nov 29 2002 12:00AM |
| Credit: | Discovery of this vulnerability is credited to Electronic Souls. |
| Vulnerable: |
Boozt! Boozt! Standard 0.9.8 |
| Not Vulnerable: | |
Discussion
Boozt index.cgi Buffer Overrun Vulnerability
A vulnerability has been discovered in Boozt. By passing a malicious parameter of excessive length to the index.cgi script, it is possible to overrun a buffer. This could be exploited by a remote attacker to corrupt sensitive memory, which may result in the execution of arbitrary code.
This issue is known to affect Boozt 0.9.8 and it is not known whether other versions are affected.
A vulnerability has been discovered in Boozt. By passing a malicious parameter of excessive length to the index.cgi script, it is possible to overrun a buffer. This could be exploited by a remote attacker to corrupt sensitive memory, which may result in the execution of arbitrary code.
This issue is known to affect Boozt 0.9.8 and it is not known whether other versions are affected.
Exploit / POC
Boozt index.cgi Buffer Overrun Vulnerability
An exploit has been written by Electronic Souls
An exploit has been written by Electronic Souls