ÎÄÕ | ÎÄÕÂÁбí>> |
2008-07-17 11:25:58
2008-07-16 09:11:34
2008-07-16 08:23:16
<?php
/*
CMailServer 5.4.6 mvmail.asp/CMailCOM.dll remote seh overwrite
proof of concept exploit
by Nine:Situations:Group::bruiser
our site: http://retrogod.altervista.org/
software site: http://www.youngzsoft.net/cmailserver/
Google dorks:
intitle:"Mail Server CMailServer WebMail"
intitle:"Mail Server CMailServer WebMail 5.4.6"
Some notes:
This server provides a IIS/webmail interface and a registered component
vulnerable to multiple buffer overflows, among the others, the
CMailCom.POP3 class with CLSID 6971D9B8-B53E-4C25-A414-76199768A592.
This class is called by various ASP scripts inside the main folder...
I found this clear vector, look mwmail.asp , lines 25-35:
...
Set objPOP3 = CreateObject("CMailCOM.POP3.1")
objPOP3.Login Session("User"), Session("Pass")
Session("LoginSuccess") = objPOP3.LoginSuccess
If..
/*
CMailServer 5.4.6 mvmail.asp/CMailCOM.dll remote seh overwrite
proof of concept exploit
by Nine:Situations:Group::bruiser
our site: http://retrogod.altervista.org/
software site: http://www.youngzsoft.net/cmailserver/
Google dorks:
intitle:"Mail Server CMailServer WebMail"
intitle:"Mail Server CMailServer WebMail 5.4.6"
Some notes:
This server provides a IIS/webmail interface and a registered component
vulnerable to multiple buffer overflows, among the others, the
CMailCom.POP3 class with CLSID 6971D9B8-B53E-4C25-A414-76199768A592.
This class is called by various ASP scripts inside the main folder...
I found this clear vector, look mwmail.asp , lines 25-35:
...
Set objPOP3 = CreateObject("CMailCOM.POP3.1")
objPOP3.Login Session("User"), Session("Pass")
Session("LoginSuccess") = objPOP3.LoginSuccess
If..
2008-07-16 08:20:08
2008-07-16 08:19:25
2008-07-16 08:18:34
2008-07-16 08:17:21
Microsoft SharePoint ·þÎñÆ÷Ô´Âë HTML ×¢Èë©¶´
ÊÜÓ°Ïìϵͳ£º
Microsoft Windows SharePoint Services 2.0
ÃèÊö£º
SharePoint ServerÊÇÒ»¸ö·þÎñÆ÷¹¦Äܼ¯³ÉÌ×¼þ£¬Ìá¹©È«ÃæµÄÄÚÈݹÜÀíºÍÆóÒµËÑË÷£¬¼ÓËÙ¹²ÏíÒµÎñÁ÷³Ì²¢¼ò»¯¿ç½çÏÞÐÅÏ¢¹²Ïí¡£
SharePoint Services 2.0ÖдæÔÚ¿çÕ¾½Å±¾Â©¶´£¬ÔÚʹÓÃÎı¾±à¼Æ÷Ìí¼ÓͼƬºó±£´æÍøÒ³Ê±£¬Ã»ÓÐÕýÈ·µØ¹ýÂËijЩ×Ö·û´®¡£Èç¹ûÓû§µÄä¯ÀÀÆ÷ÖÐÆôÓÃÁËJavaScriptµÄ»°£¬ÔòÔÚÓû§²é¿´¸ÃÍøÒ³Ê±¾Í»áÖ´ÐÐͼƬԴÂëÖÐËùǶÈëµÄ½Å±¾¡£
³§É̲¹¶¡£º
Ŀǰ³§ÉÌ»¹Ã»ÓÐÌṩ²¹¶¡»òÕßÉý¼¶³ÌÐò£¬ÎÒÃǽ¨ÒéʹÓôËÈí¼þµÄÓû§ËæÊ±¹Ø×¢³§É̵ÄÖ÷Ò³ÒÔ»ñÈ¡×îа汾£ºhttp://www.microsoft.com/technet/security/
ÊÜÓ°Ïìϵͳ£º
Microsoft Windows SharePoint Services 2.0
ÃèÊö£º
SharePoint ServerÊÇÒ»¸ö·þÎñÆ÷¹¦Äܼ¯³ÉÌ×¼þ£¬Ìá¹©È«ÃæµÄÄÚÈݹÜÀíºÍÆóÒµËÑË÷£¬¼ÓËÙ¹²ÏíÒµÎñÁ÷³Ì²¢¼ò»¯¿ç½çÏÞÐÅÏ¢¹²Ïí¡£
SharePoint Services 2.0ÖдæÔÚ¿çÕ¾½Å±¾Â©¶´£¬ÔÚʹÓÃÎı¾±à¼Æ÷Ìí¼ÓͼƬºó±£´æÍøÒ³Ê±£¬Ã»ÓÐÕýÈ·µØ¹ýÂËijЩ×Ö·û´®¡£Èç¹ûÓû§µÄä¯ÀÀÆ÷ÖÐÆôÓÃÁËJavaScriptµÄ»°£¬ÔòÔÚÓû§²é¿´¸ÃÍøÒ³Ê±¾Í»áÖ´ÐÐͼƬԴÂëÖÐËùǶÈëµÄ½Å±¾¡£
³§É̲¹¶¡£º
Ŀǰ³§ÉÌ»¹Ã»ÓÐÌṩ²¹¶¡»òÕßÉý¼¶³ÌÐò£¬ÎÒÃǽ¨ÒéʹÓôËÈí¼þµÄÓû§ËæÊ±¹Ø×¢³§É̵ÄÖ÷Ò³ÒÔ»ñÈ¡×îа汾£ºhttp://www.microsoft.com/technet/security/
2008-07-16 08:16:28
ÊÜÓ°Ïìϵͳ£º
Microsoft Windows XP SP2
Microsoft Windows Vista SP1
Microsoft Windows Vista
Microsoft Windows Server 2008
Microsoft Windows Server 2003 SP2
Microsoft Windows Server 2003 SP1
ÃèÊö£º
WindowsÊÇ΢Èí·¢²¼µÄ·Ç³£Á÷ÐеIJÙ×÷ϵͳ¡£
WindowsÖÐÒÔNetworkServiceºÍLocalServiceÕʺÅÔËÐеĴúÂëÔÊÐí·ÃÎÊÏàͬȨÏÞÔËÐÐµÄÆäËû½ø³ÌÖеÄ×ÊÔ´£¬µ«¿ÉÒÔ½«È¨ÏÞÌáÉýµ½LocalSystem¡£
Èç¹û±¾µØ¹¥»÷ÕßÄܹ»Í¨¹ýIIS£¨ASP.NET´úÂëÒÔÍêÈ«¿ÉÐÅÈÎȨÏÞÔËÐлòͨ¹ýISAPIÀ©Õ¹/¹ýÂËÆ÷ÔËÐУ©ºÍSQL Server£¨¿ÉÒÔ¹ÜÀíȨÏÞ¼ÓÔØºÍÔËÐдúÂ룩ÔÚÒÑÈÏÖ¤µÄ»·¾³ÖÐÔËÐдúÂëµÄ»°£¬¾Í¿ÉÄÜÒÔLocalSystemȨÏÞÖ´ÐÐÈÎÒâÖ¸Áî¡£
³§É̲¹¶¡£º
Ŀǰ³§ÉÌ»¹Ã»ÓÐÌṩ²¹¶¡»òÕßÉý¼¶³ÌÐò£¬ÎÒÃǽ¨ÒéʹÓôËÈí¼þµÄÓû§ËæÊ±¹Ø×¢³§É̵ÄÖ÷Ò³ÒÔ»ñÈ¡×îа汾£º
http://www.microsoft.com/technet/security/
2008-07-16 08:15:32
ÊÜÓ°Ïìϵͳ£º
Microsoft HeartbeatCtl ActiveX
ÃèÊö£º
Microsoft HeartbeatCtl ActiveX¿Ø¼þÓÃÓÚÔÚMSNÓÎÏ·Õ¾µãÍæ¶àÓû§ÓÎÏ·¡£
HeartbeatCtl ActiveX¿Ø¼þÔÚ´¦ÀíHost²ÎÊýʱ´æÔÚ»º³åÇøÒç³ö©¶´£¬Èç¹ûÓû§ÊÜÆä¯ÀÀÁËÌØÖÆµÄHTMLÎĵµµÄ»°£¬¾Í¿ÉÄÜ´¥·¢Õâ¸öÒç³ö£¬µ¼ÖÂÖ´ÐÐÈÎÒâÖ¸Áî¡£
³§É̲¹¶¡£º
MicrosoftÒѾΪ´Ë·¢²¼ÁËÒ»¸ö°²È«¹«¸æ£¨MS07-069£©ÒÔ¼°ÏàÓ¦²¹¶¡:
MS07-069£ºCumulative Security Update for Internet Explorer (942615)
Á´½Ó£ºhttp://www.microsoft.com/technet/security/Bulletin/MS07-069.mspx?pf=true
2008-07-15 21:21:49
nternetÍøµÄÈÕÒæÆÕ¼°£¬Ðí¶àÔÚÍøÉϳåÀ˵ÄÍøÓѾ³£Óöµ½ÕâÑùµÄÎÊÌ⣺ÎÒÖªµÀij¸ö¹ýÈ¥µÄÅóÓÑ¡¢Í¬Ñ§µÄÃû×Ö£¬»òÏ£ÍûÓë¹úÍâij¸ö½ÌÊÚ½¨Á¢ÁªÏµ£¬¶øÇÒÈÏΪËûÃÇ¿ÉÄÜÓµÓеç×ÓÓʼþµØÖ·£¬µ«ÊÇÔõÑù²ÅÄÜÕÒµ½ËûµÄE£mailµØÖ·ÄØ£¿Ðí¶àÈ˶Դ˸е½À§»ó£¬ÔÚ±¨¿¯ÉÏÈ«Ãæ½éÉÜ´ËÀà·½·¨µÄÎÄÕ²»¶à£¬ÎªÁËѸËÙ׼ȷ´ïµ½Ä¿µÄ£¬ÖªµÀ²éÕÒ·½·¨ºÍ·þÎñ»ú¹¹ÏԵ÷dz£ÖØÒª£¬ÕâÀï¾Í±¾ÈËÔÚ²éÕÒE£mailµØÖ··½ÃæµÄ¼¸µãÌå»á×÷Ò»¼òµ¥½éÉÜ¡£
¡¡¡¡Ò»¡¢WEB¼ìË÷
¡¡¡¡ÔÚInternetÉÏÓÐÐí¶à»ú¹¹ÔÊÐíͨ¹ýÍøÂçä¯ÀÀÆ÷½øÐÐÐÕÃû²éÕÒ¼ìË÷£¬Í¨¹ýÌîÈëÐè²éѯµÄÐÕÃû¼´¿ÉÁª»úµÃµ½ËùÐèE£mailµØÖ·¡£
¡¡¡¡£¨Ò»£©È«ÇòÐÔ°×Ò³·þÎñºÍE£mailµØÖ·²éÕÒ
¡¡¡¡1£®MESA (Meta E£mail Search Agent)¡´http://mesa.rrzn.uni£hannover.de/¡µ¿ÉÄÜÊÇĿǰÊÕ¼E£mailµØÖ·×îÈ«µÄÍøÕ¾£¬¸Ã·þÎñÆ÷¿É½«µ¥Ò»µÄ¼ìË÷ÇëÇó£¬Ìá½»¸ø¶àÖÖËÑË÷ÒýÇæ£¬°üÀ¨Bigfoot¡¢DejaNews¡¢ Four11¡¢ IAF¡¢ Infospace¡¢ SwissinfoºÍsuchen.deµÈÊý¾Ý¿â£¬¾ø´ó¶àÊý¿É´ïµ½ÒªÇó£¬È±µãÊÇÐèµÈºò½Ï³¤Ê±¼ä¡£
¡¡¡¡2£®Bigfoot ¡´http://www.bigfoot.com/¡µÓдóÔ¼Ò»ÒÚ¸öµç»°ºÅÂëÒÔÉϵİ×Ò³ºÍ1000Íò¸öE£mailµØÖ·¡£
¡¡¡¡3£®Phonebooke ¡´[url]http://www.phonebooke.com..
2008-07-15 18:15:06
2008-07-10 16:37:44
2008-07-09 17:14:18
2008-07-09 17:13:22
2008-07-09 17:09:56
2008-07-09 08:32:50
2008-07-08 11:33:52
2008-06-30 17:47:08
2008-06-30 12:29:44
2008-06-29 18:04:58



¹«¸æ
simeon2005 µÄBLOG
²©¿Íͳ¼ÆÐÅÏ¢
51CTOÍÆ¼ö²©¿Í
ÍøÂç°²È«ÍÆ¼öÕ¾µã
ÎÄÕÂ
Ò»¸ö¹ú¼Ò¼¶Æ¶À§ÏØ£¬Òª²»ÊÇǰÁ½Äêμұ¦×ÜÀíÀ´ÊӲ죬ͨÍùÏØ³ÇµÄ¹«Â·¶¼ÐÞ²»ÆðÀ´¡£¡±Õâ¸ö³öÉíÐÓÁÖÊÀ¼Ò¡¢´ÓС²»°²·ÖµÄÉÙÄ꣬ÉíÉÏÓÐÒ»¹ÉÌìÈ»µÄ°®¹úÇéÐ÷¡£
ÈÈÃÅÎÄÕÂ
×îÐÂÆÀÂÛ
51CTOÍÆ¼ö²©ÎÄ