鬼仔注:压缩包中有两个文件,分别为
snmp_exploit.php
引用
//PHP <= 5.2.3 snmpget() object id local Buffer Overflow eip overwrite exploit
//by GaRY <wofeiwo_at_gmail_dot_com>
//Based on http://www.milw0rm.com/exploits/4204 by shinnai
//Just change the shellcode
//Tested on xp Pro sp2 cn
//by GaRY <wofeiwo_at_gmail_dot_com>
//Based on http://www.milw0rm.com/exploits/4204 by shinnai
//Just change the shellcode
//Tested on xp Pro sp2 cn
引用
//PHP 5.2.3 tidy_parse_string() & tidy_repair_string() local buffer overflow poc (win)
//by GaRY <wofeiwo_at_gmail_dot_com>
//Based on http://www.milw0rm.com/exploits/4080 by rgod
//Just change the shellcode
////Tested on xp Pro sp2 cn
//by GaRY <wofeiwo_at_gmail_dot_com>
//Based on http://www.milw0rm.com/exploits/4080 by rgod
//Just change the shellcode
////Tested on xp Pro sp2 cn
来源:GaRY's Blog