Vx search enterprise 10.4.16 useragent denial of service Vulnerability / Exploit
/
/
/
Exploits / Vulnerability Discovered : 2019-08-30 |
Type : dos |
Platform : windows
This exploit / vulnerability Vx search enterprise 10.4.16 useragent denial of service is for educational purposes only and if it is used you will do on your own risk!
[+] Code ...
# Exploit Title: VX Search Enterprise v10.4.16 DoS
# Google Dork: N/A
# Date: 17.01.2018
# Exploit Author: James Chamberlain [chumb0]
# Vendor Homepage: http://www.vxsearch.com/downloads.html
# Software Link: http://www.vxsearch.com/setups/vxsearchent_setup_v10.4.16.exe
# Version: v10.4.16
# Tested on: Windows 7 Home x86
# CVE : N/A
# Have been unable to overwrite SEH/EIP, but the crash serves as an unauthenticated DoS.
# Replication - Large buffer sent in the majority of Request Headers. PoC attached. Server needs http enabling (non default)