Archive for January, 2010

IE wshom.ocx (Run) ActiveX Remote Code Execution ( add admin user)

Posted in Vulnerable InforMation, exploit on January 27th, 2010 by admin – Be the first to comment

47ed9ac94f8931b364bed4cb49e3c878000

[Read All About This Article]

Windows Media Player 11 ActiveX launchURL() files download

Posted in 0day, Vulnerable InforMation, exploit on January 18th, 2010 by admin – Be the first to comment

This is a vulnerability into Windows Media Player ActiveX launchURL() function

which someone can download what ever file into the vulnerable machine !!!
Discovered and written by Jacky!
Tested version: 11.0.5358.4827
Tested machine: Windows XP SP3 & Windows XP SP2

47ed9ac94f8931b364bed4cb49e3c878001

[Read All About This Article]

Internet Explorer Aurora Exploit

Posted in 0day, Vulnerable InforMation, exploit on January 18th, 2010 by admin – Be the first to comment

#

# Author : Ahmed Obied (ahmed.obied@gmail.com)

#

# This program acts as a web server that generates an exploit to

# target a vulnerability (CVE-2010-0249) in Internet Explorer.

# The exploit was tested using Internet Explorer 6 on Windows XP SP2.

# The exploit’s payload spawns the calculator.

#

# Usage : python ie_aurora.py [port number]

#

47ed9ac94f8931b364bed4cb49e3c878002

[Read All About This Article]

Linux Kernel FASYNC Use-After-Free Privilege Escalation Vulnerability

Posted in 0day, Vulnerable InforMation, exploit on January 17th, 2010 by admin – Be the first to comment

Affect:

Linux kernel 2.6.32
Linux kernel 2.6.31 5
+ Trustix Secure Enterprise Linux 2.0
+ Trustix Secure Linux 2.2
+ Trustix Secure Linux 2.1
+ Trustix Secure Linux 2.0
Linux kernel 2.6.31 .2
Linux kernel 2.6.31 .11
Linux kernel 2.6.31 -rc7
+ Trustix Secure Enterprise Linux 2.0
+ Trustix Secure Linux 2.2
+ Trustix Secure Linux 2.1
+ Trustix Secure Linux 2.0
Linux kernel 2.6.31 -rc6
+ Trustix Secure

[Read All About This Article]

IE wshom.ocx ActiveX Control Remote Code Execution

Posted in 0day, Vulnerable InforMation, exploit on January 17th, 2010 by admin – Be the first to comment

# Title: IE wshom.ocx ActiveX Control Remote Code Execution

# EDB-ID: 11151

# CVE-ID: ()

# OSVDB-ID: ()

# Author: germaya_x and D3V!L FUCKER

# Published: 2010-01-16

# Verified: yes

# Download Exploit Code

# Download N/A

view sourceprint?

#######################################################################

#IE ActiveX remote bof (remote code excution)

#version: all versions

#Author: [germaya_x &

[Read All About This Article]