Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Geutebrueck_GCore_X64_RCE_BO — Metasploit module for Geutebrueck GCore "video management" system. Tested with version 1.3.8.42 and 1.4.2.37 | Kitploit
Tools/GitHubGitHub/m4p0/geutebrueck_gcore_x64_rce_bo
Exploit FrameworksExploitationPenetration TestingRed TeamingBinary Exploitation
GitHubm4p0/geutebrueck_gcore_x64_rce_bo

Geutebrueck_GCore_X64_RCE_BO

Metasploit module for Geutebrueck GCore "video management" system. Tested with version 1.3.8.42 and 1.4.2.37

View Repository
5259 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Geutebrueck_GCore_X64_RCE_BO

Metasploit module for Geutebrueck GCore "video management" system. Tested with version 1.3.8.42 and 1.4.2.37.

Full remote code execution with NT/System privileges on Windows (Win 2012R2,Win8.1,...) with the installed Geutebrueck products (GCore).

Authors:

  • https://www.infoguard.ch
  • Luca Cappiello
  • Maurice Popp

Thanks to xorlab (https://www.xorlab.com/) for the coffee and inspiring ideas and inputs.

http://www.geutebrueck.com/en_US/product-overview-31934.html

Timeline

2016-04-25 > Vendor was contacted, but no reply.

2016-04-28 > Vendor was re-contacted by several email addresses. Vendor replied but no security contact details were provided.

2016-05-02 > Vendor was re-contacted. Vendor replied, security contact details were provided. All vulnerability related information was shared with the provided security contact.

2016-05-03 > Vendor announced a patch for the vulnerability.

2016-05-13 > Vendor was contacted to get the progress of the patch. Vendor replied that the vulnerability was fixed but no update mechanism is available. Disclosure timeline was discussed and due the missing update mechanism an extended time window was defined (>90d).

2016-07-29 > Vendor was contacted and asked about the vulnerability status and if the customers were informed. No reply from vendor.

2016-08-19 > Vendor replied that the customers were informed and an update is available since 2016-07-22.

2017-01-24 > Full disclosure and publication of metasploit module.

MSF

alt text

alt text

Download Tool