CORE IMPACT v7.5 - Exploits Update (Fri May 09 2008)
Orbit Downloader Download Failed Exploit
Exploits/Client Side [Windows]
Fri May 09 2008
Orbit Downloader is vulnerable to a buffer overflow attack, which can be exploited by malicious remote attackers to execute arbitrary code. The vulnerability is due to Orbit not properly converting an URL ASCII string to UNICODE. This can be exploited to execute arbitrary code by downloading a file from a specially crafted URL.
Exploits Vulnerabiltiy: CVE-2008-1602











