Vulnerability Development mailing list archives

Re: AlphaNumeric Exploitation Help


From: Felix Lindner <felix.lindner () nruns com>
Date: Thu, 26 May 2005 20:07:46 +0200

On 26 May 2005 11:38:25 -0000
<ramatkal () hotmail com> wrote:
I am trying to exploit a vulnerable server which only allows
alphanumeric characters....

I have successfully taken control of EIP and now need to do a JUMP -600
bytes.....

Anyone got any ideas/tricks/advice on how i can accomplish a JMP -600 bytes,
or any type of jump for that matter, only using alphanumeric chars?

You will need at least on register (I assume IA-32 here) pointing to your
current point of execution. Could you provide more detail on the vuln and how
you want to exploit it?

Felix

-- 
 Felix Lindner, CISSP | Senior Security Consultant, n.runs GmbH
         fx () nruns com | +49 (0)171 740 20 62
real hackers don't die, their TTL expires


Current thread: