Metasploit mailing list archives

Question about Rpc/Dcom exploit


From: hdm at metasploit.com (H D Moore)
Date: Fri, 11 Mar 2005 08:16:48 -0600

Not all of those bytes may really be restricted characters. It is usually 
better to err on the safe side then to spent an hour hunting down a 
reliability problem cause by a missing badchar definition.

-HD

On Friday 11 March 2005 04:43, Mattiew J. wrote:
After a look at msrpc_dcom_ms03_026.pm I wonder why so many restricted
bytes are in the  BadChars set.
I know \x00 is the NULL string terminator, \x5C the UNC path terminator
(??), but I have no idea what those \x0A \x0D \x5F \x2F \x2E are for...
Could anyone enlighten me about this?

Thanks



Current thread: