[Full-Disclosure] Badblue HTTP Server Exploit

Miguel Tarascó Acuña tarako at gmail.com
Sun Feb 27 22:43:52 GMT 2005


Hi

Here is the Exploit to the new BadBlue Vuln


/* Badblue 2.55 Web Server remote buffer overflow
 * ( Version: BadBlue Personal Edition v2.55  Date: Dec. 9, 2004 )
 *
 * Tested under Windows 2000 Professional SP3/SP4 Spanish
 *              Windows 2000 Server SP4 Spanish
 *              Windows XP SP1 Spanish
 *
 * Credits:
 *  Andres Tarasco (atarasco _at_ sia.es) has discovered this vulnerability
 *  http://lists.netsys.com/pipermail/full-disclosure/2005-February/032029.html
 *
 * Exploit by  : Miguel Tarascó Acuña
 *               Tarako AT Haxorcitos.com
 * Exploit Date: 26/12/2004 
 */
-------------- next part --------------
A non-text attachment was scrubbed...
Name: badblue.cpp
Type: application/octet-stream
Size: 9136 bytes
Desc: not available
Url : http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20050227/13b1429f/attachment.obj 


Full-Disclosure is hosted and sponsored by Secunia.