New User, Welcome!     Login

Service Exploit

The father of all bombs - another webdav fiasco

Apache mod_dav / svn Remote Denial of Service Exploit

Google Dorks:
inurl:svn inurl:trunk
"powered by subversion version"

Information on the bug (XML Bomb):
http://blog.didierstevens.com/2008/09/23/dismantling-an-xml-bomb/

Enjoy!

{PRL} Cerberus FTP server 3.0.6 Pre-Auth DoS

#!/usr/bin/env python

###################################################################################
#
# Cerberus FTP Server Denial of Service Exploit (Pre Auth)
# Found By:     Francis Provencher (Protek Research Lab's)
# Tested On:    Windows XPSP2
# Usage:        ./script <Target IP>
#
###################################################################################

Avax Vector ActiveX 1.3 (avPreview.ocx) Denial of Service Exploit

=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
Sec-r1z.com
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
 Vulnerabilities : Avax Vector ActiveX 1.3 (avPreview.ocx) Denial of Service Exploit
 Bug Hunter: Satan_Hackers (Satan_hackers@yahoo.com)
 Greetz.: All Sec-r1z member's ...
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=

<html>
<object classid='clsid:9589AEC9-1C2D-4428-B7E8-63B39D356F9C' id='CCRP' ></object>

vBulletin 3.8.2 Denial of Service Exploit

 ## Mail : Qkk@Hotmail.Fr                ##
 ##                                                                    ##
 ########################################################################
 ########################################################################
 ##                                ##                                  ##
 ##->vBulletin 3.8.2 Denial of Service Exploit<-    ##
                 ##
 ##                                ##                                  ##
 ##Enter These Exploit              ##                                  ##
 ##1.Target                        ##[*] www.Baloma.net                ##
 ##2.Forum                         ##[*] vbulletin                     ##

Re: CORRECTION: EXPL0it FIXED :JPG PoC denial of service exploit by CrazyAngel

Actually, this is not a jpg file. Although the exploit image is named as .jpg, its format is consistent with the windows metafile format, not the jpeg. It is already well known that there are unpatched bugs in wmf file processing in Windows which can crash the viewing application.

The same goes for recently published 'MS Windows Explorer.exe Gif Image Denial of Service Exploit'.





Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!