Professional Webmasters Community
Would you like to react to this message? Create an account in a few clicks or log in to continue.

Windows XP Internet Explorer 8,7 .HLP vulnerability

Go down

Windows XP Internet Explorer 8,7 .HLP vulnerability Empty Windows XP Internet Explorer 8,7 .HLP vulnerability

Post  andry Thu Dec 09, 2010 2:56 am

It is possible to invoke winhlp32.exe from Internet Explorer 8,7,6
using VBScript. Passing malicious .HLP file to winhlp32 could allow
remote attacker to run arbitrary command.
Additionally, there is a stack overflow vulnerability in winhlp32.exe.


Afected Software: Windows XP SP3

More info: http://isec.pl
andry
andry
Moderator
Moderator

Posts : 467
Join date : 2010-05-07

Back to top Go down

Back to top

- Similar topics

 
Permissions in this forum:
You cannot reply to topics in this forum