Core Security
info@coresecurity.com  | +1.617.399.6980 | Contact Us   Core Blog Core Blog Twitter LinkedIn youtube
SHARE

CORE IMPACT v7 - Exploits Update (Mon Oct 08 2007)

Microsoft SQL Server Distributed Management Objects Exploit

Exploits/Client Side  [Windows]




• Mon Oct 08 2007
This module exploits a vulnerability in the SQLDMO.DLL control included in the Microsoft SQL Server application. The exploit is triggered when the Start() method processes a long string argument resulting in a stack-based buffer overflow. This module runs a malicious web site on the CORE IMPACT Console and waits for an unsuspecting user to trigger the exploit by connecting to the web site.

Exploits Vulnerabiltiy: CVE-2007-4814



< Back to Product Updates