Heap-based Buffer Overflow in WellinTech KingView Product
CVE-2011-0406
Currently unrated
Key Information:
- Vendor
Wellintech
- Status
- Vendor
- CVE Published:
- 11 January 2011
Badges
๐พ Exploit Exists๐ก Public PoC๐ฃ EPSS 55%
What is CVE-2011-0406?
The vulnerability arises from a heap-based buffer overflow in HistorySvr.exe of WellinTech's KingView 6.53. Attackers can exploit this flaw by sending a specifically crafted long request to TCP port 777, potentially leading to arbitrary code execution on the affected system. This poses a significant risk as it can allow unauthorized access and control over the vulnerable application.
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
