Sploitus

Exploit for Windows Server Service buffer overflow

saint Β· 2006-08-11

Exploit Code

MARKDOWN32 lines
## https://sploitus.com/exploit?id=SAINT:FAA2D7963586117985DEDCB8ABB67809
Added: 08/11/2006  
CVE: [CVE-2006-3439](<https://vulners.com/cve/CVE-2006-3439>)  
BID: [19409](<http://www.securityfocus.com/bid/19409>)  
OSVDB: [27845](<http://www.osvdb.org/27845>)  


### Background

The Windows Server Service supports file, print, and named-pipe sharing over the network. 

### Problem

A buffer overflow vulnerability in the Windows Server Service allows remote attackers to execute arbitrary commands. 

### Resolution

Apply the patch referenced in [Microsoft Security Bulletin 06-040](<http://www.microsoft.com/technet/security/bulletin/ms06-040.mspx>). 

### References

<http://www.microsoft.com/technet/security/bulletin/ms06-040.mspx>  


### Limitations

Exploit works on Windows 2000 and Windows XP SP1. Target computer may reboot after connection is closed. 

### Platforms

Windows 2000  
Windows XP