Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2006-3592 PoC — Cisco Unified CallManager命令输出重定向漏洞

Source
Associated Vulnerability
Title:Cisco Unified CallManager命令输出重定向漏洞 (CVE-2006-3592)
Description:Cisco Unified CallManager是Cisco IP电话解决方案中基于软件的呼叫处理组件。 CallManager CLI提供了到系统的备用管理接口,以便诊断和排除基于HTTPS的主管理接口上的故障。这个以root用户权限运行的CLI在解析命令时存在两个漏洞.漏洞允许将命令输出重新定向到命令行中所指定的文件或文件夹。 Cisco Unified CallManager支持同时存在SCCP和SIP电话,这就允许迁移到SIP而仍保护对现有设备的投资。CUCM在处理SIP请求中的超长主机名时存在
Description
Exploit for Easy File Sharing FTP Server 3.5 on Win7 32
Readme
# CVE-2006-3952
Exploit for Easy File Sharing FTP Server 3.5 on Win7 32


Based on:
* pwntools
* msfvenom / reverse\_tcp payload

Vulnerable app available at https://www.exploit-db.com/apps/0efddb6d04f4125d7c1f104c6b1c60a0-efsfs.exe

Simple SEH overrite + couple jumps back, due to stack being corrupted after SEH value.
File Snapshot

[4.0K] /data/pocs/24f3fe5ce227843642985935f4a3d253e7a24b48 ├── [5.5K] exploit.py ├── [ 833] fuzz.py └── [ 321] README.md 0 directories, 3 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.