[CVE-2011-5165]Free MP3 CD Ripper本地代码执行漏洞

作者:k0shl 转载请注明出处:http://whereisk0shl.top

漏洞说明

软件下载:

https://www.exploit-db.com/apps/64215b82be8bb2e749f95fec5b51d3e4-FMCRSetup-2.6.exe

PoC:

filename = "3v1lf1l3.wav"

print "cr34t1ng 3v1......

Linux漏洞分析--NOIP本地代码执行漏洞

作者:k0shl 转载请注明出处:http://whereisk0shl.top

漏洞说明

软件下载:

https://www.exploit-db.com/apps/3b0f5f2ff8637c73ab337be403252a60-noip-duc-linux.tar.gz

PoC:

import os

binary = ".ip-2.1.9-1/binaries......

Linux漏洞分析--MP3Info 0.8.5a代码执行漏洞(CVE-2006-2465)

作者:k0shl 转载请注明出处:http://whereisk0shl.top

漏洞说明

软件下载:

https://www.exploit-db.com/apps/cb7b619a10a40aaac2113b87bb2b2ea2-mp3info-0.8.5a.tgz

PoC:

junk = "\x90\x90\x90\x90"*8 ......