AKB Forums

Go Back   AKB Forums > Technical sections > Software Security
Home Register Blogs FAQ Members List Calendar Downloads Arcade Mark Forums Read

Software Security Discussing software security algorithms, tricks, vulnerabilities

Troubles when posting message? Click here! :: Проблемы с отправлением сообщения? Нажмите сюда!

Reply
 
LinkBack Thread Tools Display Modes
Old Jun 20, 2002, 23:04   #1
Консервативный Демагог
 
VX's Avatar
 
Join Date: Jan 2002
Location: Кавказская Албания
Posts: 889
Rep Power: 7
Reputation: 10
Post Proof of concept Remote Apache 1.3.x Exploit

Nu derjites'!

exploid zdes':
http://vx.mine.nu/vuln/chunk.c

Upgrade upgrde upgrade!

BTW u menya ne upgradeno _00
Poka Ne upgradeno..no esli uspete....
__________________
Праздник к нам приходит...

|^^^^^^^^^'''^\| ||\__
| ВОДКА-ВОДКА | ||','''|'''''''\_____,_
| _..... _ | ||_ _|'__|_____||.........| |
'(@)'(@)'(@)''''''''''''''''''''''*|(@)""""|(@)*
VX is offline   Reply With Quote Quote selected
Old Jun 20, 2002, 23:12   #2
Moderator
 
Mono's Avatar
 
Join Date: Oct 2001
Location: Yerevan
Posts: 5,409
Blog Entries: 1
Rep Power: 8
Reputation: 102
Thumbs up

Dzec !!!
__________________
---------------
Արատտայի ու Խալդեյի հովանավոր .
Mono is offline   Reply With Quote Quote selected
Old Jun 21, 2002, 02:47   #3
Консервативный Демагог
 
VX's Avatar
 
Join Date: Jan 2002
Location: Кавказская Албания
Posts: 889
Rep Power: 7
Reputation: 10
Post

inc@ dzec, vor chem arel update
Arden vaxuc arel em

__________________
Праздник к нам приходит...

|^^^^^^^^^'''^\| ||\__
| ВОДКА-ВОДКА | ||','''|'''''''\_____,_
| _..... _ | ||_ _|'__|_____||.........| |
'(@)'(@)'(@)''''''''''''''''''''''*|(@)""""|(@)*
VX is offline   Reply With Quote Quote selected
Old Jun 21, 2002, 23:08   #4
Moderator
 
Mono's Avatar
 
Join Date: Oct 2001
Location: Yerevan
Posts: 5,409
Blog Entries: 1
Rep Power: 8
Reputation: 102
Thumbs down

Chdzec !!!
__________________
---------------
Արատտայի ու Խալդեյի հովանավոր .
Mono is offline   Reply With Quote Quote selected
Old Jun 26, 2002, 00:01   #5
Guru Apprentice
 
Join Date: Feb 2002
Location: /dev/null
Posts: 524
Rep Power: 7
Reputation: 10
Send a message via ICQ to Ektich Send a message via Yahoo to Ektich
Post

A na linuxe eto rabotaet? Ili tolko pod BSD?
__________________
\/\/h47'5 1n 4 n4m3? 7h47 wh1(h w3 (4|| 4 r053,
8y 4ny 07h3r n4m3 w0u|d 5m3|| 45 5w337...
Ektich is offline   Reply With Quote Quote selected
Old Jun 26, 2002, 22:24   #6
Консервативный Демагог
 
VX's Avatar
 
Join Date: Jan 2002
Location: Кавказская Албания
Posts: 889
Rep Power: 7
Reputation: 10
Post

Quote:
Originally posted by Ektich:
A na linuxe eto rabotaet? Ili tolko pod BSD?
Govoryat ujse nashli retaddr dlya redhat 7.0

BTW vishla versiya takje dlya x86 Freebsd
__________________
Праздник к нам приходит...

|^^^^^^^^^'''^\| ||\__
| ВОДКА-ВОДКА | ||','''|'''''''\_____,_
| _..... _ | ||_ _|'__|_____||.........| |
'(@)'(@)'(@)''''''''''''''''''''''*|(@)""""|(@)*
VX is offline   Reply With Quote Quote selected
Old Jul 2, 2002, 00:45   #7
Младенец
 
Join Date: Jul 2002
Location: Arminco
Posts: 18
Rep Power: 0
Reputation: 10
Post

Hello again,
The apache exploit is nearly for any OS Solaris, *BSD, Linux ...
The exploit which you have got VX was sent by Gobbles 3 weeks ago which is for newbies and is just for OpenBSD there is another exploit sent by Gobbles for *BSD but it doesn't mean that Solaris is not affected.
Beside Gobbles tell that that is not a remote exploit but a backdoor left by apache.

Thanks
Artashes Kalantarian is offline   Reply With Quote Quote selected
Old Jul 2, 2002, 04:25   #8
Консервативный Демагог
 
VX's Avatar
 
Join Date: Jan 2002
Location: Кавказская Албания
Posts: 889
Rep Power: 7
Reputation: 10
Post

Please forward me that message!.
BTW i've post this sploit 2 weeks ago.
I've never post exploids at the same day.
First i do upgrade myself;-))

Thank you too for comments!
Hope to see you every day here.
__________________
Праздник к нам приходит...

|^^^^^^^^^'''^\| ||\__
| ВОДКА-ВОДКА | ||','''|'''''''\_____,_
| _..... _ | ||_ _|'__|_____||.........| |
'(@)'(@)'(@)''''''''''''''''''''''*|(@)""""|(@)*
VX is offline   Reply With Quote Quote selected
Old Jul 2, 2002, 04:39   #9
Консервативный Демагог
 
VX's Avatar
 
Join Date: Jan 2002
Location: Кавказская Албания
Posts: 889
Rep Power: 7
Reputation: 10
Post

By the way
http://www.host.am/.
http://www.host.am/..

;-)) have a nice ls in youre documentroot
__________________
Праздник к нам приходит...

|^^^^^^^^^'''^\| ||\__
| ВОДКА-ВОДКА | ||','''|'''''''\_____,_
| _..... _ | ||_ _|'__|_____||.........| |
'(@)'(@)'(@)''''''''''''''''''''''*|(@)""""|(@)*
VX is offline   Reply With Quote Quote selected
Old Jul 2, 2002, 06:12   #10
Младенец
 
Join Date: Jul 2002
Location: Arminco
Posts: 18
Rep Power: 0
Reputation: 10
Post

Thanks VX,
CommuniGate Pro the buggest system in the world.
They have corrected that bug some year ago but ...
But I can tell that you can do nothing with it cause you have no permission do it.
Protected system is realy protected one.
Thanks
Artashes Kalantarian is offline   Reply With Quote Quote selected
Old Jul 2, 2002, 06:34   #11
Консервативный Демагог
 
VX's Avatar
 
Join Date: Jan 2002
Location: Кавказская Албания
Posts: 889
Rep Power: 7
Reputation: 10
Post

Dear Artka
I don't need youre system or someone more...i don't care what do you have on youre fs..phpMyChat ,sth special..

But i can't understand what's stopping you to do an upgrade: license or crack?

This is alreday offtopic......drop me youre icq UIN
__________________
Праздник к нам приходит...

|^^^^^^^^^'''^\| ||\__
| ВОДКА-ВОДКА | ||','''|'''''''\_____,_
| _..... _ | ||_ _|'__|_____||.........| |
'(@)'(@)'(@)''''''''''''''''''''''*|(@)""""|(@)*
VX is offline   Reply With Quote Quote selected
Old Jul 2, 2002, 06:46   #12
Младенец
 
Join Date: Jul 2002
Location: Arminco
Posts: 18
Rep Power: 0
Reputation: 10
Post

Dear VX
The problem is that you have found a new bug in CommuniGatePro.
You can report it or check the site http://www.stalker.com/CommuniGatePro
)))))
Artashes Kalantarian is offline   Reply With Quote Quote selected
Old Jul 2, 2002, 06:59   #13
Консервативный Демагог
 
VX's Avatar
 
Join Date: Jan 2002
Location: Кавказская Албания
Posts: 889
Rep Power: 7
Reputation: 10
Post

Ayo,
3 posta u menya v razdele, i ti uje xamish, kuda molodej katitsya, BTW ya pomoemu sprosil tvoy UIN.
__________________
Праздник к нам приходит...

|^^^^^^^^^'''^\| ||\__
| ВОДКА-ВОДКА | ||','''|'''''''\_____,_
| _..... _ | ||_ _|'__|_____||.........| |
'(@)'(@)'(@)''''''''''''''''''''''*|(@)""""|(@)*
VX is offline   Reply With Quote Quote selected
Old Jul 2, 2002, 07:01   #14
Младенец
 
Join Date: Jul 2002
Location: Arminco
Posts: 18
Rep Power: 0
Reputation: 10
Post

irc://eefnet/#prhack we are not there but we sniff the channel
Artashes Kalantarian is offline   Reply With Quote Quote selected
Old Jul 2, 2002, 22:45   #15
freelancer
 
Yerkanian's Avatar
 
Join Date: Jun 2002
Location: the same place
Posts: 592
Rep Power: 7
Reputation: 10
Post

don't sniff it!!!

They'll backtrace and own your box
Yerkanian is offline   Reply With Quote Quote selected
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 04:00.


Powered by vBulletin® Version 3.6.8
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
This board was founded on September 29, 2001
Powered by Viper Internet

Affordable Web Hosting | ParevNet

Buy text link