Dameware Mini Remote Control 4.0 Username Stack Buffer Overflow
Posted by deepcore on September 15, 2017 – 8:53 am
This Metasploit module exploits a stack based buffer overflow vulnerability found in Dameware Mini Remote Control v4.0. The overflow is caused when sending an overly long username to the DWRCS executable listening on port 6129. The username is read into a strcpy() function causing an overwrite of the return pointer leading to arbitrary code execution.
Post a reply
You must be logged in to post a comment.