DiskSavvy Enterprise 9.1.14 / 9.3.14 GET Buffer Overflow
Posted by deepcore on January 22, 2017 – 3:08 pm
This Metasploit module exploits a stack-based buffer overflow vulnerability in the web interface of DiskSavvy Enterprise versions 9.1.14 and 9.3.14, caused by improper bounds checking of the request path in HTTP GET requests sent to the built-in web server. This Metasploit module has been tested successfully on Windows XP SP3 and Windows 7 SP1.
Post a reply
You must be logged in to post a comment.