CVE-2006-4691
60Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 79%
from disclosure to weapon2 days
Published on NVDNov 14
1st PoC+2d
metasploitNov 14
exploitation probability
79%top 1% of all CVEs
observed exploitation
nono source reports it
4 public exploit(s)
Stack-based buffer overflow in the NetpManageIPCConnect function in the Workstation service (wkssvc.dll) in Microsoft Windows 2000 SP4 and XP SP2 allows remote attackers to execute arbitrary code via NetrJoinDomain2 RPC messages with a long hostname.
Affected products
n/a · n/apublic PoCs found — 4
exploitdbwww.exploit-db.com/exploits/2809unverifiedexploitdbwww.exploit-db.com/exploits/2789unverifiedexploitdbwww.exploit-db.com/exploits/2800unverifiedexploitdbwww.exploit-db.com/exploits/16372unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://research.eeye.com/html/advisories/published/AD20061114.htmlhttps://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-070http://secunia.com/advisories/22883http://securitytracker.com/id?1017221https://exchange.xforce.ibmcloud.com/vulnerabilities/29948https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A607https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A908http://www.kb.cert.org/vuls/id/778036http://www.securityfocus.com/archive/1/451588/100/0/threadedhttp://www.securityfocus.com/bid/20985http://www.us-cert.gov/cas/techalerts/TA06-318A.htmlhttp://www.vupen.com/english/advisories/2006/4508