Immunity, Inc.
Name ms10_025
CVE CVE-2010-0478
Exploit Pack CANVAS
Descriptionms10_025
NotesCVE Name: CVE-2010-0478
Vendor: Microsoft
Notes:
This exploit will exploit vulnerable Windows 2000 servers - both with and without the buggy patch.

It steals the socket so no listener is needed when using this exploit.

1) The service becomes irresponsive after the first exploit attempt.
2) You'll end up in a Service account with administrator access.
This means you can't use screengrab from that thread.
3) You'll need to restart the service as part of your cleanup

You can restart it with net start "Windows Media Unicast Service"

This exploit supports both English and Simplified Chinese targets.


VersionsAffected: Microsoft Media Services
Repeatability: One-shot
CVE URL: http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0478
References: ['http://www.microsoft.com/technet/security/bulletin/ms10-025.mspx']
Date public: 04/13/2010
MSADV: MS10-025

Learn more about the CANVAS Exploit Pack here: CANVAS