vuln-dameware

A new exploit for Dameware Mini Remote Control showed up last days. Even though the exploit has some minor bugs (f.e. does not compile properly on unix and is not stringsafe ..) the first people took the challenge and started scanning for vulnerable machines.

The stats are taken from dshield.

We recommend you to update your unpatched nepenthes 0.1.1 version using the patch offerd here. There is a explanation howto apply the patch too. The patch includes the previous noted libmagic fix.

important note
as the etc/shellcode-generic.conf got extended, but wont be overwritten in a existing installation by default, we recommend you to remove it before installing the patched version, or copy the new version by hand.

cp modules/shellcode-generic/shellcode-generic.conf.dist /where/is/nepenthes/etc/shellcode-generic.conf

keep collecting

Comments



2005/09/07/dameware.txt · Last modified: 2010/06/15 13:34 by common
chimeric.de = chi`s home Creative Commons License Valid CSS Driven by DokuWiki do yourself a favour and use a real browser - get firefox!! Recent changes RSS feed Valid XHTML 1.0