Vulnerabilities > CVE-2005-4734 - Remote Stack Based Buffer Overflow vulnerability in RSA Authentication Agent IISWebAgentIF.DLL

047910
CVSS 6.4 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
rsa
exploit available
metasploit

Summary

Stack-based buffer overflow in IISWebAgentIF.dll in RSA Authentication Agent for Web (aka SecurID Web Agent) 5.2 and 5.3 for IIS allows remote attackers to execute arbitrary code via a long url parameter in the Redirect method.

Vulnerable Configurations

Part Description Count
Application
Rsa
2

Exploit-Db

descriptionMicrosoft IIS ISAPI RSA WebAgent Redirect Overflow. CVE-2005-4734. Remote exploit for windows platform
idEDB-ID:16358
last seen2016-02-01
modified2010-09-20
published2010-09-20
reportermetasploit
sourcehttps://www.exploit-db.com/download/16358/
titleMicrosoft IIS ISAPI RSA WebAgent Redirect Overflow

Metasploit

descriptionThis module exploits a stack buffer overflow in the SecurID Web Agent for IIS. This ISAPI filter runs in-process with inetinfo.exe, any attempt to exploit this flaw will result in the termination and potential restart of the IIS service.
idMSF:EXPLOIT/WINDOWS/ISAPI/RSA_WEBAGENT_REDIRECT
last seen2020-02-27
modified2017-07-24
published2005-12-26
referenceshttps://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4734
reporterRapid7
sourcehttps://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/windows/isapi/rsa_webagent_redirect.rb
titleMicrosoft IIS ISAPI RSA WebAgent Redirect Overflow

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/83040/rsa_webagent_redirect.rb.txt
idPACKETSTORM:83040
last seen2016-12-05
published2009-11-26
reporterH D Moore
sourcehttps://packetstormsecurity.com/files/83040/Microsoft-IIS-ISAPI-RSA-WebAgent-Redirect-Overflow.html
titleMicrosoft IIS ISAPI RSA WebAgent Redirect Overflow

Saint

bid26424
descriptionRSA SecurID Web Agent for IIS redirect buffer overflow
idmisc_rsawebagentredir
osvdb20151
titlersa_auth_agent_redirect
typeremote