Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Vulnerability Development: Re: AlphaNumeric Exploitation Help

Re: AlphaNumeric Exploitation Help

From: Felix Lindner <felix.lindner_at_nruns.com>
Date: Thu, 26 May 2005 20:07:46 +0200

On 26 May 2005 11:38:25 -0000
<ramatkal_at_hotmail.com> wrote:
> I am trying to exploit a vulnerable server which only allows
> alphanumeric characters....
>
> I have successfully taken control of EIP and now need to do a JUMP -600
> bytes.....
>
> Anyone got any ideas/tricks/advice on how i can accomplish a JMP -600 bytes,
> or any type of jump for that matter, only using alphanumeric chars?

You will need at least on register (I assume IA-32 here) pointing to your
current point of execution. Could you provide more detail on the vuln and how
you want to exploit it?

Felix

-- 
 Felix Lindner, CISSP | Senior Security Consultant, n.runs GmbH
         fx_at_nruns.com | +49 (0)171 740 20 62
real hackers don't die, their TTL expires
Received on May 26 2005
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos