Cisco IOS 12.3(18) FTP Server Remote Exploit (attached to gdb)(情報元のブックマーク数)

Cisco IOSFTPサーバ機能に脆弱性だそうです。

/*

Cisco IOS FTP server remote exploit by Andy Davis 2008

Cisco Advisory ID: cisco-sa-20070509-iosftp - May 2007

Specific hard-coded addresses for IOS 12.3(18) on a 2621XM router

Removes the requirement to authenticate and escalates to level 15

*********************************************************************
To protect the innocent a critical step has been omitted, which means
the shellcode will only execute when the router is attached to gdb.
I'm sure the PowerPC shellcoders out there will work it out...
*********************************************************************

Thanks to Gyan Chawdhary and Varun Uppal for all the hours they spent
on the original IOS security research

iosftpexploit googlemail 'dot' com

*/

http://www.milw0rm.com/exploits/6155

screenshot