CVE-2004-2271
60Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 72%
from disclosure to weapon0 days
Published on NVDJul 19
1st PoCNov 7
metasploitNov 7
exploitation probability
72%top 1% of all CVEs
observed exploitation
nono source reports it
7 public exploit(s)
Buffer overflow in MiniShare 1.4.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request.
Affected products
n/a · n/apublic PoCs found — 7
githubgithub.com/kkirsche/CVE-2004-2271★ 4githubgithub.com/PercussiveElbow/CVE-2004-2271-MiniShare-1.4.1-Buffer-Overflow★ 0githubgithub.com/war4uthor/CVE-2004-2271★ 0githubgithub.com/pwncone/CVE-2004-2271-MiniShare-1.4.1-BOF★ 0exploitdbwww.exploit-db.com/exploits/616unverifiedexploitdbwww.exploit-db.com/exploits/636unverifiedexploitdbwww.exploit-db.com/exploits/16754unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://archives.neohapsis.com/archives/fulldisclosure/2004-11/0208.htmlhttp://secunia.com/advisories/13114http://securitytracker.com/id?1012106https://exchange.xforce.ibmcloud.com/vulnerabilities/17978http://sourceforge.net/project/shownotes.php?release_id=241158http://www.osvdb.org/11530http://www.securiteam.com/exploits/6X00B1PBPC.htmlhttp://www.securityfocus.com/bid/11620