CORE IMPACT v7.5 - Exploits Update (Thu May 22 2008)
CA BrightStor ARCserve Backup ListCtrl Buffer Overflow Exploit
Exploits/Client Side [Windows]
Thu May 22 2008
This module exploits a vulnerability in the ListCtrl ActiveX Control (ListCtrl.ocx) used CA BrighStor ARCserve Backup. The exploit is triggered when a long string argument is processed by the AddColumn() method resulting in a stack-based buffer overflow. This module runs a malicious web site on the CORE IMPACT Console and waits for an unsuspecting user to trigger the exploit by connecting to the web site.
Exploits Vulnerabiltiy: CVE-2008-1472











