hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

Full Version: Iis Media Exploit?
Pages: 1, 2
som3aa
i don't use telnet to connect
there is another program called media.exe , pm me if u want it
digitalk2003
One of my friends IIS 5 servers started getting hit with attacks to access /scripts/nsiislog.dll. But after he ran the baseline security scanner and iislockdown, nothing has gotten through. Yesterday I checked www.cert.org and found this, http://www.kb.cert.org/vuls/id/959211, detailing the vulnerability. ph34r.gif

I know this is a relatively new vulnerability but is it possible to compromise system with it? This wouldn't seem to be the case for production / development servers which leads me to believe that maybe it is just a phenomenon in the wild. blink.gif

Ciau...

digitalk2003
SaintDogbert
Ok..

Using one of the IIS Media exploits i get this:

QUOTE
Successfully exploited **IP_MASKED_BY_POSTER** (80)


So i telnet to the IP on port 80 and i get a black screen where nothing happens.. I connect on 34816 and it says it cant connect. Can you guys tell me what I'm doing wrong? :/

panter
Hello, some one, please send me the media exploit: "media.exe", talk with me in the icq.
And for connecting to other computer's to the remote I am using net-cat, I sing that this is the best program for this target.
contact with me in the icq if you want the program + explanation abut the program .
My icq:285884223. wink.gif
private
try a port below TCP 1023
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.