Description
This module exploits a stack buffer overflow in Savant 3.1 Web Server. The service supports a maximum of 10 threads (for a default install). Each exploit attempt generally causes a thread to die whether successful or not. Therefore, in a default configuration, you only have 10 chances.
Due to the limited space available for the payload in this exploit module, use of the "ord" payloads is recommended.
Module options
To display the available options, load the module within the Metasploit console and run the commands 'show options' or 'show advanced':
msf > use exploit/windows/http/savant/31_overflowmsf undefined(31_overflow) > show actions ...actions...msf undefined(31_overflow) > set ACTION < action-name >msf undefined(31_overflow) > show options ...show and set options...msf undefined(31_overflow) > runPrioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub