[framework] MS06-040 : tests OK

Steve ekco9595 at rogers.com
Mon Aug 14 10:08:32 CDT 2006


hey for this exploit and others using port 445 like lsass, does it only work on systems thats firewall settings are not set to local/scope (like almost all are now)..
  
Jerome Athias <jerome.athias at free.fr> wrote:
  Quite true

but i'll not test it against production servers
and installing all the environments on WMWare takes time...

btw, good admins should have allready patched their systems, etc and all 
should be nice in the better world...

nospam a écrit :
> Hi all
> 
> In most environment, most servers would be
> in Window 2003 SP1 and client XP SP2.
> 
> Thanks
>
> 
> On 8/11/06, *Jerome Athias* > > wrote:
>
> Actually tested successful against:
>
> Windows 2000 PRO SP0 FR
> Windows 2000 PRO SP1 FR
> Windows 2000 PRO SP2 FR
> Windows 2000 PRO SP3 FR
> Windows 2000 PRO SP4 FR
> Windows 2000 PRO SP4 US
> Windows XP PRO SP0 FR
> Windows XP PRO SP1 FR
>
> with:
> set TARGET 0
> set PAYLOAD win32_bind
>
> both in WORKGROUP and DOMAIN
>
>
> Thank you very much HD for this great birth0day party!
>
> /JA
>
>


-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://spool.metasploit.com/pipermail/framework/attachments/20060814/40d2de75/attachment.htm 


More information about the framework mailing list