Exploit Microsoft Windows 98/2000 Explorer - Preview Pane Script Injection

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
25454
Проверка EDB
  1. Пройдено
Автор
GREYMAGIC SOFTWARE
Тип уязвимости
REMOTE
Платформа
WINDOWS
CVE
cve-2005-1191
Дата публикации
2005-04-19
Код:
source: https://www.securityfocus.com/bid/13248/info

Microsoft Windows Explorer is prone to a script injection vulnerability. This occurs when the Windows Explorer preview pane (Web View) is enabled on Windows 2000 computers. Windows 98/98SE/ME are also affected by this issue. If a file with malicious attributes is selected using Explorer, script code contained in the attribute fields may be executed with the privilege level of the user that invoked Explorer. This could be exploited to gain unauthorized access to the vulnerable computer in the context of the currently logged in user. 

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/25454-1.doc

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/25454-2.doc

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/25454-3.doc
 
Источник
www.exploit-db.com

Похожие темы