Bugtraq mailing list archives

Re: Force Feeding


From: mark () BURNETTS NET (M. Burnett)
Date: Mon, 26 Jun 2000 12:50:55 -0600


The demo exploit won't work in W2K because the temp directory where the
.exe is downloaded to is  "c:\documents and
settings\'username'\local settings\temp".  If it is possible to get the
username through JavaScript and another ActiveX control it could possibly
be made to work there also.

Although I haven't tested it, I believe you can use environment variables in
the codebase location.  The variable to use would be %USERPROFILE% although
you could also use %HOMEPATH%, %TEMP%, or %TMP%.

M. Burnett


Current thread: