Re: Unixware 7.1.1 rpc.cmsd remote exploit code.

From: Dave Ahmad (daat_private)
Date: Thu Jan 10 2002 - 09:54:34 PST

  • Next message: Adrian Chung: "Cookie modification allows unauthenticated user login in Geeklog 1.3"

    Hmm, this is incomplete.. attached is the full version of his
    exploit.
    
    Dave Ahmad
    SecurityFocus
    www.securityfocus.com
    
    On 10 Jan 2002, jGgM. wrote:
    
    >
    >
    > Hi, I'm jGgM.
    >
    > Here is unixware 7.1.1 rpc.cmsd remote exploit code.
    > This is old bug. ( Currently patched....maybe.. )
    > This works only not -patched Unixware 7.1.1.
    >
    > --------------------------------------
    > Korean security Info.. by jGgM.
    > http://www.forsecure.com/
    > http://www.netemperor.com/
    > --------------------------------------
    > /*
    >  * Unixware 7.x rpc.cmsd exploit by jGgM
    >  * http://www.netemperor.com/en/
    >  * EMail: jggmat_private
    >  */
    >
    
    
    



    This archive was generated by hypermail 2b30 : Thu Jan 10 2002 - 12:36:57 PST