Saturday, July 7, 2007

SAP DB 7.4 WebTools Remote SEH Overwrite Exploit

http://www.milw0rm.com/exploits/4157

This is the SEH overwrite realization of the vulnerability found by NGSSoftware Insight Security Research, it is trivial. We send a big amount of bytes to server (about 20000) and overwrite SEH. Aproximatly at the 9900 byte we trigger an exception and our shellcode is executed.

No comments:

Post a Comment