Join us at IRC!
Society leans ever heavily on computers, if you have the power to take out computers you can take out society. - cubeman372
Wednesday, May 23, 2012
Navigation
Members Online
Total Online: 38
Web Spiders: 18
Guests Online: 33
Members Online: 5

Registered Members: 70161
Newest Member: pix6ie
Latest Articles
View Thread

HellBound Hackers | HellBound Hackers | Questions

Author

apache buffer overflow

chronicburst
Member

Posts: 466
Location: /root/
Joined: 03.01.08
Rank:
Elite
Posted on 28-07-09 03:25
Hey I was doing some research and scanning on my network and apparently there is a buffer overflow in mod_frontpage. Now I do not know anything about overflows but I will be reading up in the mean time. I was just wondering if I would be able to exploit this myself sides it is on my network, mine as well try it. However I cannot find an exploit for Apaches mod_frontpage. There is a ton of information on it being vulnerable. But cannot find an exploit. Well if you know any places to look pleace let me know. Wow, this was a terrible post, I should just not stop looking. Wasting time.
Well also I have a FreeBSD server I just installed. Any ideas what to do with it? I know they are mainly used for servers, but, I don't know, anyone know of something interesting.
chronicburst at yahoo dot com http://hellboundhackers.org
Author

RE: apache buffer overflow

pimpim
Member



Posts: 45
Location: Reading your /etc/shadow
Joined: 26.10.08
Rank:
HBH Guru
Posted on 28-07-09 08:45
I googled it, and I couldn't find any public exploits for the vulnerability, but I found this link: http://www.securityfocus.com/bid/4251

The vunerability was posted on the Bugtraq list in March of 2002, I doubt your version is vulnerable (Vulnerable versions are 1.3.1-1.5.1).


sa.backman@hotmail.com
Author

RE: apache buffer overflow

S1L3NTKn1GhT
Member



Posts: 468
Location: XXXX
Joined: 03.06.06
Rank:
God
Warn Level: 10
Posted on 28-07-09 17:25
+1 on the above, if it isn't your version than it likely won't work, there up to 2.2.10 right now ;). If your's IS this (then u installed a while back :p ), then use the descblockedription of the vulnerability to code your own PoC code.


root@wtf.org#su - dumbass

Dude you're AWESOME!
-SystemMeltdown(MSN)
http://isexu.com
Guest
Username

Password

Remember Me


Bookmark This Page
Affiliates
Adverts

 

 

Links
By using, viewing or obtaining any information contained on this site, you agree to the disclaimer.

© HellBound Hackers 2008- 2009. Since 3rd December 2004.