Bugtraq mailing list archives

Exploit: pqx.c -- post-query (CGI) remote buffer overflow


From: proton <proton () ENERGYMECH NET>
Date: Mon, 12 Mar 2001 12:39:56 +0100

Attached is a working exploit program for Linux-ix86.

You may or may not be vulnerable to this exploit
depending on a number of factors.

Better safe than sorry, remove post-query if you have it.
It is an example program designed to demonstrate how posting
to CGI works and as such isnt useful for any normal
webserver operations.

In case the attachement is corrupted or lost, there is
a copy available at;

http://www.energymech.net/users/proton/pqx.c

/proton
[ http://www.energymech.net/users/proton/ ]

Attachment: pqx.c
Description:


Current thread: