首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全工具>拒绝服务>软件详细
软件名称:  sp-samihttpddos.rar
文件类型:  
界面语言:  简体中文
软件类型:  国产软件
运行环境:  WinNT/2K/Xp
授权方式:  共享软件
软件大小:  27K
软件等级:  ★★★★☆
发布时间:  2004-02-18
官方网址: http://vfocus.net 作者:vitter
演示网址:
软件说明:  
KarjaSoft Sami HTTP Server 1.0.4 Buffer Overflow
-------------------------------------------------
Vendor Home Page:
http://www.karja.com
Date Released - 2.16.2004
--------------------------------------
Product Description from the vendor:

KarjaSoft's Sami brand of servers strives to provide small and powerful solutions, incorporated into the Pluging Management System. Focusing on simple configuration and small size, the Sami products still provide the functionality needed for either company or personal use. Sami HTTP Server is designed to provide the most useful features of a web server, while still keeping the simplicity. With a few clicks you will be ready to share your files over the web!

--------------------
Buffer Overflow

A specifically crafted HTTP GET request which contains over 4096 bytes of data will cause the HTTP server to crash.  It may be possible to execute arbitrary code.  Previous versions may also be affected by this vulnerability.  Please see the sploit for the HTTP GET request which causes the crash.

----------
Exploit:

Attached to this advisory is a very code which only causes the HTTP server to crash.  

------------------------------
Tested on WindowsXP SP1

------------------------------
Original link to the advisory:

http://www.security-protocols.com/modules.php?name=News&file=article&sid=1746

peace out,

------------------------------
badpack3t
www.security-protocols.com
------------------------------

/****************************/
   PoC to crash the server
/****************************/

http://fux0r.phathookups.com/coding/c++/sp-samihttpddos.c

   Sami HTTP Server Version 1.0.4
   vendor:
   http://karja.com

   coded and discovered by:
   badpack3t <badpack3t@security-protocols.com>
   for .:sp research labs:.
   www.security-protocols.com
   2.13.2004
  
   usage:
   sp-samihttpddos <targetip> [targetport] (default is 80)
 
下载地址: 进入下载地址列表
下载说明: ☉推荐使用网际快车下载本站软件,使用 WinRAR v3.10 以上版本解压本站软件。
☉如果这个软件总是不能下载的请点击报告错误,谢谢合作!!
☉下载本站资源,如果服务器暂不能下载请过一段时间重试!
☉如果遇到什么问题,请到本站论坛去咨寻,我们将在那里提供更多 、更好的资源!
☉本站提供的一些商业软件是供学习研究之用,如用于商业用途,请购买正版。
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热门软件
·MS04-007-dos.exe
·synflood.c.txt
  相关软件
·MS04-007-dos.exe
·synflood.c.txt
 
  推荐广告
CopyRight © 2002-2018 VFocuS.Net All Rights Reserved