This exploit demonstrates a memory corruption DoS vulnerability in the XAMPP Control Panel by sending junk data to specific ports (e.g., MySQL, Tomcat, FileZilla, Mercury Mail). The script continuously sends 'DOOM' to the target port until the XAMPP Control Panel crashes with an access violation.
Classification
Working Poc 90%
Target:
XAMPP Control Panel (versions 3.1.0, 3.2.2)
No auth needed
Prerequisites:
Network access to the target XAMPP Control Panel ports · XAMPP Control Panel running with vulnerable services