Bugtraq mailing list archives
applicable exploit for winxp-sp2-uptodate Internet Explorer
From: Liu Die Yu <liudieyu () umbrella name>
Date: 11 Jan 2005 16:33:15 -0000
patch will come in hours(at least i believe so). many people(paul of greyhats and mike, sandblad of secunia and shreddersub7) already provided proof-of-concept remote-code-execution exploit for winxp-sp2-uptodate Internet Explorer. the problem is: their code is simply not applicable in real attack. so i made this: http://0daymon.org/monitor/injecthh-op-2/dir/injecthh_op_2-code_by_liudieyu http://0daymon.org/monitor/injecthh-op-2/dir.zip
Current thread:
- applicable exploit for winxp-sp2-uptodate Internet Explorer Liu Die Yu (Jan 11)
- IE HHCTRL exploit still usable even after patch Valentin Avram (Jan 19)