Disk Pulse Enterprise 9.0.34 Login Buffer Overflow
Posted by deepcore on November 15, 2016 – 2:28 am
This Metasploit module exploits a stack buffer overflow in Disk Pulse Enterprise 9.0.34. If a malicious user sends a malicious HTTP login request, it is possible to execute a payload that would run under the Windows NT AUTHORITYSYSTEM account. Due to size constraints, this module uses the Egghunter technique.
Post a reply
You must be logged in to post a comment.