Re: [Full-Disclosure] Bad news on RPC DCOM2 vulnerability

From: Peter King (elvi52001_at_yahoo.com)
Date: 10/11/03

  • Next message: Florian Keller: "AW: [Full-Disclosure] Bad news on RPC DCOM2 vulnerability"
    To: full-disclosure@lists.netsys.com
    Date: Sat, 11 Oct 2003 01:28:40 -0700 (PDT)
    
    

    why those *security* sites keep *exploits* online even when they know that this is an unpatched vuln !!!!
     
    personnaly i'd like to test this exploit on my systems, but can't compile it
    http://www.k-otik.com/exploits/10.09.rpc2universal.c.php
     
    can anyone post the .exe please, to test our machines ...
     
    Cheers.

    petard <petard@sdf.lonestar.org> wrote:
    On Fri, Oct 10, 2003 at 07:05:46PM -0500, Bobby Brown wrote:
    > So I can "assume" no other information is posted, other than this site, to collaborate the RPC issue is not resolved or should we all try to translate this site using the helpful hints, which they are?
    >
    >
    k-otik posted some similar if not identical code, corroborating (to a point anyway) its
    effectiveness. (It most likely worked for one of them if they posted it.)

    I suggest taking the linked code, compiling it (use MSVC7) and testing it to confirm
    for yourself. Please test on a machine that's not connected to the internet, though :-)

    HTH,

    petard

    ---------------------------------
    Do you Yahoo!?
    The New Yahoo! Shopping - with improved product search

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


  • Next message: Florian Keller: "AW: [Full-Disclosure] Bad news on RPC DCOM2 vulnerability"

    Relevant Pages

    • AW: [Full-Disclosure] Bad news on RPC DCOM2 vulnerability
      ... Betreff: Re: [Full-Disclosure] Bad news on RPC DCOM2 vulnerability ... can anyone post the .exe please, to test our machines ... ... petard wrote: ... Do you Yahoo!? ...
      (Full-Disclosure)
    • SUMMARY: ssh2 prblem
      ... to another than home directory "/,/usr" and use ... this problem is same from two machines, ... Do You Yahoo!? ... Mail has the best spam protection around ...
      (Tru64-UNIX-Managers)
    • strange files in /var/tmp
      ... due to this my root file system has filled up. ... The other machines also have ... Do you Yahoo!? ... Calendar - Free online calendar with sync to Outlook. ...
      (SunManagers)
    • ntp configuration
      ... I wanna configure ntp ... Machines are sun netra sparc with solaris 7 as the OS ... > following information for IKE ... Do you Yahoo!? ...
      (SunManagers)
    • Re: An interview question
      ... values are all passed to and from functions with identical code, ... "number of machines you'll encounter", possibly lower if we count each ... those numbers are getting noticeably lower with time. ... I misread Eric's post. ...
      (comp.lang.c)