exploit-db-mirror/platforms/windows/remote/22288.txt
Offensive Security fffbf04102 Updated
2013-12-03 19:44:07 +00:00

9 lines
No EOL
704 B
Text
Executable file

source: http://www.securityfocus.com/bid/6961/info
Microsoft Internet Explorer contains a vulnerability that can allow script code within an HTML document to run an embedded executable file. Since the file is an HTML file, Internet Explorer will open and parse the file. When the script that points back to the embedded executable is parsed, the embedded executable will run on the client system in the security context of Internet Explorer.
There have been reports that some users may not be able to reproduce this vulnerability. When more information becomes available, this record will be updated.
http://www.exploit-db.com/sploits/22288-1.zip
http://www.exploit-db.com/sploits/22288-2.zip