A buffer overflow vulnerability exists in Microsoft's PPTP (Point to Point Tunnelling Protocol) implementation. Both the PPTP server and client applications are vulnerable. It is possible to crash the kernel of the target (blue screen), the installation of an agent using this vulnerability is difficult and have not been implemented in this module.
This module sends HTTP requests with specially crafted data making the PHP process consume lot of resources. This attack prevents the victim server from processing requests from legitimate clients and probably will make the server non-operational. The PATH parameter must point to a PHP web page, which they normally have a ".php" extension.
This module exploits a vulnerability in the Microsoft Windows NAT Helper Component (ipnathlp.dll) when Internet Connection Sharing is enabled, sending a specially crafted DNS query.