Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




Vulnerability Development mailing list archives

Re: AlphaNumeric Exploitation Help
From: Felix Lindner <felix.lindner () nruns com>
Date: Thu, 26 May 2005 20:07:46 +0200

On 26 May 2005 11:38:25 -0000
<ramatkal () hotmail com> wrote:
I am trying to exploit a vulnerable server which only allows
alphanumeric characters....

I have successfully taken control of EIP and now need to do a JUMP -600
bytes.....

Anyone got any ideas/tricks/advice on how i can accomplish a JMP -600 bytes,
or any type of jump for that matter, only using alphanumeric chars?

You will need at least on register (I assume IA-32 here) pointing to your
current point of execution. Could you provide more detail on the vuln and how
you want to exploit it?

Felix

-- 
 Felix Lindner, CISSP | Senior Security Consultant, n.runs GmbH
         fx () nruns com | +49 (0)171 740 20 62
real hackers don't die, their TTL expires


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]