目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1359 元

100%

CVE-2010-4221 PoC — ProFTPD栈缓冲区溢出漏洞

来源
关联漏洞
标题: ProFTPD栈缓冲区溢出漏洞 (CVE-2010-4221)
Description:ProFTPD 是一款开放源代码FTP服务程序。 ProFTPD 1.3.3c之前版本中的netio.c文件中的pr_netio_telnet_gets函数中存在多个基于栈的缓冲区溢出漏洞。远程攻击者可以借助向(1)FTP或者(2)FTPS服务器提交与TELNET IAC转义字符有关恶意输入执行任意代码。
Description
This exploit was written to study some concepts, enjoy!
介绍
# cve-2010-4221
This exploit was written to study some concepts, enjoy!

## Usage

    Proftpd Telnet IAC remote generic exploit
    Writen by: F0rb1dd3n

    Usage: ./proftpd-exploit <target IP> <target PORT> <attack type>

    Attack Types:   0 - Socket Reuse
                    1 - Reverse Shell
                    2 - Bind Shell
                    3 - Your own shellcode (raw format)



Just type the target IP, PORT and the type of attack that you chose. The program will ask for another informations like: localhost, local port or remote bind port!

## Disclaimer

You don't need to set a listener for Reverse Shell, because the exploit will handle it for you. 
If you choose to use your own shellcode, you will need to set your listener!
文件快照

登录后查看神龙缓存的 POC 文件快照

登录查看
备注
    1. 建议优先通过来源进行访问。
    2. 本地 POC 快照面向订阅用户开放;当原始来源失效或无法访问时,本地镜像作为订阅权益的一部分提供。
    3. 持续抓取、验证、维护这份 POC 档案需要不少投入,因此本地快照已纳入付费订阅。您的订阅是让这份资料能继续走下去的关键,由衷感谢。 查看订阅方案 →