exploits , vulnerabilities , articles , Microsoft FrontPage Server Extensions Remote Debug Buffer Overrun Vulnerability
| Title |
Microsoft FrontPage Server Extensions Remote Debug Buffer Overrun Vulnerability |
| Published |
2003-11-11-12:00AM |
| Updated |
2003-11-13-06:41PM |
| Class |
Boundary Condition Error |
| CVE |
CAN-2003-0822 |
| Remote |
Yes |
| Local |
No |
| Credit |
Discovery is credited to Brett Moore. |
| Vulnerable |
Microsoft Windows XP Professional SP1
Microsoft Windows XP Home SP1
Microsoft Windows XP 64bit Edition SP1
Microsoft Windows 2000 Server SP3
Microsoft Windows 2000 Server SP2
Microsoft Windows 2000 Professional SP3
Microsoft Windows 2000 Professional SP2
Microsoft Windows 2000 Datacenter Server SP3
Microsoft Windows 2000 Datacenter Server SP2
Microsoft Windows 2000 Advanced Server SP3
Microsoft Windows 2000 Advanced Server SP2
Microsoft SharePoint Team Services 2002
Microsoft Office XP SP1
Microsoft FrontPage Server Extensions 2002
Microsoft FrontPage Server Extensions 2000
Microsoft Windows 2000 Advanced Server
Microsoft Windows 2000 Advanced Server SP1
Microsoft Windows 2000 Advanced Server SP2
Microsoft Windows 2000 Advanced Server SP3
Microsoft Windows 2000 Datacenter Server
Microsoft Windows 2000 Datacenter Server SP1
Microsoft Windows 2000 Datacenter Server SP2
Microsoft Windows 2000 Datacenter Server SP3
Microsoft Windows 2000 Professional
Microsoft Windows 2000 Professional SP1
Microsoft Windows 2000 Professional SP2
Microsoft Windows 2000 Professional SP3
Microsoft Windows 2000 Server
Microsoft Windows 2000 Server SP1
Microsoft Windows 2000 Server SP2
Microsoft Windows 2000 Server SP3
Microsoft Windows XP Home
Microsoft Windows XP Home SP1
Microsoft Windows XP Professional
Microsoft Windows XP Professional SP1
|
| Not Vulnerable |
|
| Code |
CORE has developed a working commercial exploit for their IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
The researcher who discovered this vulnerability has developed working exploit code which is not publicly available or known to be circulating in the wild. The following proof-of-concept example was also provided:
POST /_vti_bin/_vti_aut/fp30reg.dll HTTP/1.1 Transfer-Encoding: chunked
PostLength PostData 0
An exploit (fp30reg.c) has been developed and made available by Adik and is available below.
/data/vulnerabilities/exploits/fp30reg.c
|
| TXT |
 |
|
Advertising
|
|
Copyright 2007,
SecurityDot
Fri, 11 Dec 2009 14:24:44 +0000
Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS
EXPLOITS
VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
janda geni www.aaevi. news for C www.988.jx www.zhapzh www.phenix Mmm100 components search for cisco ios php-nuke 2 www.Big As Wap.sexs.r TAMIL+ACTR sexy arab vaishali mambo Remo armspit sexs show www.xvedio sex pactur 200+%252Fc Microsoft Wap.sexs.r oneadminht frontpage http://www yangzhefen news for c SupportTri Sex me mambo Remo Madras uni DOWNLOD+SE www.hnwans Html Explo hard sex Gadis wap www.700xxx ww.sexocea php-nuke 1 Microsoft Mahasiswa ww.sexocea joomla rem Sriya 100 xxx ve frontpage hacker wol WWW.IMAM A
|