Exploit Details: - EDB-ID: 6793 - CVE: 2008-4652 - Author: Intel - Type: Remote - Platform: Windows - Vulnerable App: PowerTCP ActiveX (DartFtp.dll v2.0.2.0) Key Information: - Vulnerable Component: DartFtp.dll in PowerTCP FTP module - Description: Remote Buffer Overflow vulnerability affecting the FTP Tool within PowerTCP ActiveX Exploit Code Highlights: - Uses buffer for overflow (1604 "A"s) - Specifies and for stable shellcode execution - Includes shellcode for remote code execution Discovery and Testing Context: - Discovered by Intel - Tested on Windows Vista SP1 with Internet Explorer 7, fully patched Additional Notes: - and flags indicate safe usage context - KillBitSet flag is false, implying vulnerability during the time reported