[Full-disclosure] "WinProxy 6.0 R1c" Remote Stack/SEH Overflow Exploit

FistFucker FistFuXXer at gmx.de
Sat Jan 7 18:19:33 GMT 2006


The PoC exploit for this issue is attached to this e-mail. It has been
successfully tested under Microsoft Windows XP Professional (german, SP2).
Remote attackers can bypass the SEH frames protection of the operating
system by calling a POP/POP/RET sequence in the dynamic link libraries of
the Panda Antivirus scanning engine.


-FistFucker (aka FistFuXXer)
-------------- next part --------------
A non-text attachment was scrubbed...
Name: CAN-2005-4085_exploit.pl
Type: application/octet-stream
Size: 2917 bytes
Desc: not available
Url : http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20060107/c950d014/attachment.obj 


Full-Disclosure is hosted and sponsored by Secunia.