Sploitus

Exploit for Immunity Canvas: MS10_025

canvas · 2010-04-14

Exploit Code

MARKDOWN29 lines
## https://sploitus.com/exploit?id=MS10_025
**Name**|  ms10_025  
---|---  
**CVE**|  CVE-2010-0478  
**Exploit Pack**|  [CANVAS](<http://http://www.immunityinc.com/products-canvas.shtml>)  
**Description**| ms10_025  
**Notes**| CVE Name: CVE-2010-0478  
Vendor: Microsoft  
Notes:   
This exploit will exploit vulnerable Windows 2000 servers - both with and without the buggy patch.   
  
It steals the socket so no listener is needed when using this exploit.  
  
1) The service becomes irresponsive after the first exploit attempt.   
2) You'll end up in a Service account with administrator access.   
This means you can't use screengrab from that thread.  
3) You'll need to restart the service as part of your cleanup  
  
You can restart it with net start "Windows Media Unicast Service"  
  
This exploit supports both English and Simplified Chinese targets.  
  
  
VersionsAffected: Microsoft Media Services  
Repeatability: One-shot  
CVE URL: http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0478  
References: ['http://www.microsoft.com/technet/security/bulletin/ms10-025.mspx']  
Date public: 04/13/2010  
MSADV: MS10-025