Nmap Development mailing list archives

Zenmap GUI DLL Hijacking (zenmap.exe)


From: public mail <public () antisecurity org>
Date: Sat, 18 Sep 2010 17:51:41 +0700

hi there..

i found ur zenmap GUI is vulnerable with dll hijacking exploit.
it can be exploited via intl.dll
i have attach an example to you.
open exploit.xml with zenmap.exe (open with) then calc (shellcode) will be
pop up.
works on windows xp service pack 2.


./NoGe

Attachment: zenmap.tar.gz
Description:

_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://seclists.org/nmap-dev/

Current thread: