Metasploit mailing list archives

Re: attacking against XP-SP2


From: hdm at metasploit.com (H D Moore)
Date: Sun, 10 Jul 2005 14:12:57 -0500

Not knowing what the hell you are doing can always be a problem. Did you 
realize that Windows XP service pack 2 includes patches for the 
underlying vulnerabilities in the dcom and lsass exploit modules?

-HD

On Sunday 10 July 2005 05:53, priyank garg wrote:
i tried a large no. of targets with XP-SP2 but was unable to exploit
it with any of the payloads available.DCOM and LSASS are not working.

Please tell me is it possible to exploit an XP-SP2.

On 7/8/05, Charles Hamby <fixer at gci.net> wrote:
Do you know which type of firewall?  Some of them don't do any
outbound filtering, in which case doing a reverse shell shouldn't
present a problem.  The fact that there is a firewall there yet you
can still see SMB makes me wonder if the firewall has been
misconfigured.  Are you scanning from a LAN environment (or the same
subnet)?  That would explain it.




Current thread: